Commit Graph

103 Commits

Author SHA1 Message Date
Markus Germeier
8f6c23280d remove --sign in favor of two options "--force" and "--domain" (try 2) 2015-12-15 20:56:07 +01:00
Axel Burri
d24e531afb bugfix: PRIVATE_KEY is now configurable in config.sh, don't alter this variable after set_defaults() 2015-12-14 18:10:05 +01:00
Lukas Schauer
1eb6f6d287 grab root certificate url from certificate, fixes #43 2015-12-14 14:31:49 +01:00
Lukas Schauer
6816216fdb fixed usage of openssl sha in newer openssl versions by using direct binary output 2015-12-14 14:10:54 +01:00
Lukas Schauer
4fefa43e03 use sha in openssl instead of shasum, fixes #42 2015-12-14 14:04:11 +01:00
Lukas Schauer
3ba233de1b also output config location on --env 2015-12-14 01:35:43 +01:00
Lukas Schauer
10d9f34260 making shellcheck happy again 2015-12-14 01:30:22 +01:00
Lukas Schauer
1ab6a436c0 allow export of config variables for use in other scripts 2015-12-14 01:20:21 +01:00
Lukas Schauer
5120dfb5f3 changed order of config locations to be a bit more sane 2015-12-14 01:03:32 +01:00
Axel Burri
1e33cfe52b make default PRIVATE_KEY and WELLKNOWN relative to BASEDIR, even if BASEDIR is overridden in config.sh; basic checks on BASEDIR 2015-12-12 15:50:01 +01:00
Axel Burri
1cd2eb2551 never fallback to SCRIPTDIR, this is error-prone and confusing 2015-12-12 15:31:51 +01:00
Markus Germeier
0e92aba206 - make private key a config option
- fix logic if private key is specified via command line option
- start using PARAM_* for parameters provided at the command line
2015-12-12 03:39:45 +01:00
Lukas Schauer
8d00950572 don't assume we are in the same directory as the script 2015-12-12 02:09:08 +01:00
Lukas Schauer
0a859a1906 fancy autogenerated help text 2015-12-12 02:03:50 +01:00
Lukas Schauer
81882a64c2 added commandline options (thanks to germeier, fixes #35) 2015-12-12 01:30:34 +01:00
ET
ab30195142 Move cleaning challenge in order to clean when challenge is valid and when challenge is invalid. 2015-12-08 18:09:46 +01:00
Simon Ruderich
f9126627a8 use lock file to prevent concurrent access
Closes #31.
2015-12-08 17:52:18 +01:00
Simon Ruderich
85da9090ef fix missing variable 2015-12-08 17:36:29 +01:00
Simon Ruderich
10cf229981 check certificate to detect corruption 2015-12-08 16:57:55 +01:00
Lukas Schauer
43b00611b1 fixed output of config location 2015-12-08 16:54:34 +01:00
Lukas Schauer
0972918605 grab action urls from ca-directory 2015-12-08 16:38:25 +01:00
Simon Ruderich
0b2119c494 _request: fix unset variable
_request() is also called when $challenge_token/$keyauth is not set.
2015-12-08 16:04:52 +01:00
Simon Ruderich
84fac54107 fix typo in error message 2015-12-08 16:04:52 +01:00
Simon Ruderich
e32ea24c78 pass altname/domain as second argument to HOOK 2015-12-08 16:04:47 +01:00
Simon Ruderich
7f8ea450ff display errors from openssl 2015-12-08 16:04:47 +01:00
Simon Ruderich
526843d66e ugly fix to syntax highlighting in Vim 2015-12-08 16:04:47 +01:00
Simon Ruderich
1369c9afb8 replace echo with printf 2015-12-08 16:04:47 +01:00
Simon Ruderich
cbe1eb2cda fix typo in comment 2015-12-08 16:04:47 +01:00
Simon Ruderich
c10390fbd1 simplify expiry check 2015-12-08 16:04:47 +01:00
Simon Ruderich
3f6ff8f753 replace rm -f; ln -s with ln -sf 2015-12-08 16:04:47 +01:00
Lukas Schauer
454c164b25 Check for config file in various locations 2015-12-08 15:57:22 +01:00
Lukas Schauer
16943702a5 fixed default path to WELLKNOWN and moved SCRIPTDIR definition out of default-config block 2015-12-08 15:38:33 +01:00
et@corde.org
c24843c666 A single HOOK to handle challenge, cleaning of challenge files and uploading of certs. 2015-12-08 15:22:31 +01:00
Lukas Schauer
15accf9013 certificate comes first in fullchain.pem, fixes #26 2015-12-08 14:46:50 +01:00
Lukas Schauer
ead15632ff making shellcheck happy 2015-12-08 14:42:26 +01:00
et@corde.org
ea5b70a3d9 add CONTACT_EMAIL option on registration 2015-12-08 14:38:13 +01:00
Markus Germeier
063d28a6dc implement revoke 2015-12-07 21:00:36 +01:00
Lukas Schauer
f343dc11e8 update symlinks after signing the certificate 2015-12-07 14:28:53 +01:00
Lukas Schauer
329acb58b5 create fullchain.pem 2015-12-07 12:50:31 +01:00
Lukas Schauer
3cc587c224 also store csr with timestamp and symlink to default location 2015-12-07 12:41:57 +01:00
Lukas Schauer
1f08fda757 look for domains.txt under BASEDIR 2015-12-07 12:36:56 +01:00
Lukas Schauer
00837b86ae delete challenge response after verification 2015-12-07 12:10:51 +01:00
Lukas Schauer
98a6c549ff parse challenges json differently to be compatible with bsd sed 2015-12-07 12:08:30 +01:00
Lukas Schauer
474f33d2ca added config option to set path for openssl config file (currently only used for generating a signing request) 2015-12-07 11:45:09 +01:00
Lukas Schauer
cd13a9c21a use bash functionality instead of sed to filter SAN variable 2015-12-07 11:36:58 +01:00
Lukas Schauer
81cb6ac77b don't use '-r' on sed 2015-12-07 11:36:27 +01:00
Lukas Schauer
219b3e9d0a making shellcheck happy 2015-12-07 11:26:14 +01:00
Lukas Schauer
401f5f7597 use absolute path of script directory as default BASEDIR, remove trailing slash from BASEDIR 2015-12-07 11:21:26 +01:00
Andrey Jr. Melnikov
5b29db9755 Store keys and certs in $BASEDIR 2015-12-07 11:07:43 +01:00
Martin Geiseler
579e231631 Cleaner outputs 2015-12-06 19:51:11 +01:00