#! /bin/sh # @(#)(CAcert) $Id: make-ocsp-csr,v 1.4 2019/08/26 15:34:43 wytze Exp $ # make-ocsp-csr - create new csr for ocsp server, and optionally a new key HOST=ocsp DOMAIN=cacert.org TMP=/tmp/openssl.cnf.$$ trap "rm -f ${TMP}" 0 1 2 3 15 DIR=ssl KEY=${DIR}/private/${HOST}.${DOMAIN}.key CSR=${DIR}/private/${HOST}.${DOMAIN}.csr CRT=${DIR}/certs/${HOST}.${DOMAIN}.crt CNF=${TMP} INSDIR=/etc/lighttpd INSDIR_KEY=${INSDIR}/ssl INSDIR_CRT=${INSDIR}/ssl umask 077 mkdir -p ${DIR} ${DIR}/private ${DIR}/certs echo -e "#1. Creating openssl config file in ${CNF}\n" cat >${CNF} <