Add ocsp_update hook

In relation to issue #513
This commit is contained in:
Ike Johnson
2018-03-17 14:52:45 +08:00
committed by Lukas Schauer
parent 13b8a3f29f
commit 2fca309e94

View File

@@ -1316,6 +1316,7 @@ command_sign_domains() {
ocsp_log="$("${OPENSSL}" ocsp -no_nonce -issuer "${chain}" -verify_other "${chain}" -cert "${cert}" -respout "${certdir}/ocsp-${ocsp_timestamp}.der" -url "${ocsp_url}" 2>&1)" || _exiterr "Error while fetching OCSP information: ${ocsp_log}"
fi
ln -sf "ocsp-${ocsp_timestamp}.der" "${certdir}/ocsp.der"
[[ -n "${HOOK}" ]] && "${HOOK}" "ocsp_update" "${domain}" "${certdir}/ocsp.der"
else
echo " + OSCP stapling file is still valid (skipping update)"
fi