summaryrefslogtreecommitdiff
path: root/openvpn/easy-rsa/build-key-server
blob: 30dc41e364eaa385f1a8fc5f5d26111fa30453c2 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
#!/bin/sh

#
# Make a certificate/private key pair using a locally generated
# root certificate.
#
# Explicitly set nsCertType to server using the "server"
# extension in the openssl.cnf file.

if test $# -ne 1; then
        echo "usage: build-key-server <name>";
        exit 1
fi                                                                             

if test $KEY_DIR; then
	cd $KEY_DIR && \
	openssl req -days 3650 -nodes -new -keyout $1.key -out $1.csr -extensions server -config $KEY_CONFIG && \
	openssl ca -days 3650 -out $1.crt -in $1.csr -extensions server -config $KEY_CONFIG && \
        chmod 0600 $1.key
else
	echo you must define KEY_DIR
fi