summaryrefslogtreecommitdiff
path: root/easy-rsa/1.0/build-key-pkcs12
blob: f8a057b1e65325173d2ac45d80789c9e2b575b6f (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
#!/bin/sh

#
# Make a certificate/private key pair using a locally generated
# root certificate and convert it to a PKCS #12 file including the
# the CA certificate as well.

if test $# -ne 1; then
        echo "usage: build-key-pkcs12 <name>";
        exit 1
fi                                                                             

if test $KEY_DIR; then
	cd $KEY_DIR && \
	openssl req -days 3650 -nodes -new -keyout $1.key -out $1.csr -config $KEY_CONFIG && \
	openssl ca -days 3650 -out $1.crt -in $1.csr -config $KEY_CONFIG && \
        openssl pkcs12 -export -inkey $1.key -in $1.crt -certfile ca.crt -out $1.p12 && \
	chmod 0600 $1.key $1.p12
else
	echo you must define KEY_DIR
fi