1 Star 0 Fork 0

道尘/opsant

加入 Gitee
与超过 1200万 开发者一起发现、参与优秀开源项目,私有仓库也完全免费 :)
免费加入
克隆/下载
generate-ssl.sh 1.24 KB
一键复制 编辑 原始数据 按行查看 历史
opsany 提交于 2021-05-26 17:17 . release: v1.0.0
#!/bin/sh
# create self-signed server certificate:
# read -p "Enter your domain [www.example.com]: " DOMAIN_NAME
#Config
source ./install.config
# create dir for ssl
if [ ! -d ./conf/nginx-conf.d/ssl ];then
mkdir -p ./conf/nginx-conf.d/ssl
fi
cp ./conf/openssl.cnf ./conf/nginx-conf.d/ssl/
cd ./conf/nginx-conf.d/ssl
echo "Create server key..."
openssl genrsa -des3 -passout pass:opsany -out $DOMAIN_NAME.key 2048 >/dev/null 2>&1
echo "Create server certificate signing request..."
SUBJECT="/C=CN/ST=BeiJing/L=BeiJing/O=BeiJing/OU=OpsAny/CN=OpsAny"
openssl req -new -passin pass:opsany -subj $SUBJECT -key $DOMAIN_NAME.key -out $DOMAIN_NAME.csr >/dev/null 2>&1
echo "Remove password..."
mv $DOMAIN_NAME.key $DOMAIN_NAME.origin.key
openssl rsa -passin pass:opsany -in $DOMAIN_NAME.origin.key -out $DOMAIN_NAME.key >/dev/null 2>&1
echo "Sign SSL certificate..."
openssl x509 -req -days 3650 -extfile openssl.cnf -extensions 'v3_req' -in $DOMAIN_NAME.csr -signkey $DOMAIN_NAME.key -out $DOMAIN_NAME.crt >/dev/null 2>&1
openssl x509 -in ${DOMAIN_NAME}.crt -out ${DOMAIN_NAME}.pem -outform PEM >/dev/null 2>&1
mv ${DOMAIN_NAME}.pem ${DOMAIN_NAME}.origin.pem
cat ${DOMAIN_NAME}.key ${DOMAIN_NAME}.origin.pem > ${DOMAIN_NAME}.pem
rm -f ./conf/openssl.cnf
马建仓 AI 助手
尝试更多
代码解读
代码找茬
代码优化
1
https://gitee.com/devopssec/opsant.git
git@gitee.com:devopssec/opsant.git
devopssec
opsant
opsant
main

搜索帮助