mirror of
https://github.com/dehydrated-io/dehydrated.git
synced 2026-04-11 03:06:49 +02:00
travis: use fullchain to verify ssl certificate
This commit is contained in:
@@ -26,6 +26,7 @@ script:
|
|||||||
- ./letsencrypt.sh --cron
|
- ./letsencrypt.sh --cron
|
||||||
- ./letsencrypt.sh
|
- ./letsencrypt.sh
|
||||||
- openssl x509 -in "certs/${TMP_URL}/cert.pem" -noout -text
|
- openssl x509 -in "certs/${TMP_URL}/cert.pem" -noout -text
|
||||||
- openssl verify -verbose -CAfile "certs/lets-encrypt-staging.pem" -purpose sslserver "certs/${TMP_URL}/cert.pem"
|
- errout="$(openssl verify -verbose -CAfile "certs/${TMP_URL}/fullchain.pem" -purpose sslserver "certs/${TMP_URL}/fullchain.pem" | grep -v ': OK$')"
|
||||||
|
- if [[ ! -z "${errout}" ]]; then printf -- "${errout}"; exit 1; fi
|
||||||
- rm private_key.pem
|
- rm private_key.pem
|
||||||
- ./letsencrypt.sh --revoke "certs/${TMP_URL}/cert.pem" --privkey "certs/${TMP_URL}/privkey.pem"
|
- ./letsencrypt.sh --revoke "certs/${TMP_URL}/cert.pem" --privkey "certs/${TMP_URL}/privkey.pem"
|
||||||
|
|||||||
Reference in New Issue
Block a user