В ИТОГЕ!!!!!!!!!!!!!!!!: ================Установка сертификатов на стороне ЭЦП================ -------------------------- На уровне root на хосте -------------------------- cd /home/ks-www-data wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/root.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca2.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca3.cer --no-check-certificate certmgr -inst -store mRoot -file /home/ks-www-data/root.cer -all #корневой certmgr -inst -store mCa -file /home/ks-www-data/ca.cer -all #промежуточный certmgr -inst -store mCa -file /home/ks-www-data/ca2.cer -all #промежуточный certmgr -inst -store mCa -file /home/ks-www-data/ca3.cer -all #промежуточный -------------------------- На уровне ks-www-data на хосте-------------------------- su ks-www-data cd /home/ks-www-data wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/root.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca2.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca3.cer --no-check-certificate certmgr -inst -store uRoot -file /home/ks-www-data/root.cer -all #корневой certmgr -inst -store uCa -file /home/ks-www-data/ca.cer -all #промежуточный certmgr -inst -store uCa -file /home/ks-www-data/ca2.cer -all #промежуточный certmgr -inst -store uCa -file /home/ks-www-data/ca3.cer -all #промежуточный certmgr -list -store uRoot certmgr -list -store uCa -------------------------- На уровне www-data контейнера wsks-6.0.9_443 -------------------------- cont_name=wsks-6.0.9_443 mkdir -p /home/ks-www-data/certs cd /home/ks-www-data/certs wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/root.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca2.cer --no-check-certificate wget https://keysystems.ru/files/web/Scripts/CryptoPro/certs/ca3.cer --no-check-certificate docker cp /home/ks-www-data/certs/*.* ${cont_name}:/tmp docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -inst -store uRoot -file /tmp/certs/root.cer -all" docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -inst -store uCa -file /tmp/certs/ca.cer -all" docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -inst -store uCa -file /tmp/certs/ca2.cer -all" docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -inst -store uCa -file /tmp/certs/ca3.cer -all" docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -list -store uRoot" docker exec -ti --user www-data ${cont_name} bash -c "/opt/cprocsp/bin/amd64/certmgr -list -store uCa" ===================================================================