summaryrefslogtreecommitdiffstats
path: root/httpd-ssl-gencerts
diff options
context:
space:
mode:
authorStephen Gallagher <sgallagh@redhat.com>2017-09-21 14:55:16 -0400
committerStephen Gallagher <sgallagh@redhat.com>2017-09-21 14:55:16 -0400
commitd614e8aa11f9520416f7ef10f93a29670efe1505 (patch)
tree27cc9b57cbc69ad1488e26e7677e747a58f7c26b /httpd-ssl-gencerts
parent10a87792e56496e94cd11bcb4d44ee9561f07552 (diff)
downloadhttpd-d614e8aa11f9520416f7ef10f93a29670efe1505.tar.gz
httpd-d614e8aa11f9520416f7ef10f93a29670efe1505.tar.xz
httpd-d614e8aa11f9520416f7ef10f93a29670efe1505.zip
Require sscg 2.2.0 for creating service and CA certificates together
Signed-off-by: Stephen Gallagher <sgallagh@redhat.com>
Diffstat (limited to 'httpd-ssl-gencerts')
-rwxr-xr-xhttpd-ssl-gencerts7
1 files changed, 2 insertions, 5 deletions
diff --git a/httpd-ssl-gencerts b/httpd-ssl-gencerts
index 67b6d9a..371a838 100755
--- a/httpd-ssl-gencerts
+++ b/httpd-ssl-gencerts
@@ -5,18 +5,15 @@ set -e
FQDN=`hostname`
if test -f /etc/pki/tls/certs/localhost.crt -o \
- -f /etc/pki/tls/private/localhost.key -o \
- -f /etc/pki/tls/certs/localhost-ca.crt; then
+ -f /etc/pki/tls/private/localhost.key; then
exit 1
fi
sscg -q \
--cert-file /etc/pki/tls/certs/localhost.crt \
--cert-key-file /etc/pki/tls/private/localhost.key \
- --ca-file /etc/pki/tls/certs/localhost-ca.crt \
+ --ca-file /etc/pki/tls/certs/localhost.crt \
--lifetime 365 \
--hostname $FQDN \
--email root@$FQDN
-# mod_ssl will send the CA cert if it's appended to the server cert.
-cat /etc/pki/tls/certs/localhost-ca.crt >> /etc/pki/tls/certs/localhost.crt