109 Commits

Author SHA1 Message Date
Jason
146ed4c299 Improve mktemp compatibility
-u option doesn't exist on some implementations of mktemp (Busybox is one).
There doesn't seem to be any reason to use the option here anyway.
2017-09-10 16:38:16 +09:00
Eric F Crist
041062b377 Add code-signing x509-type.
Resolves #144

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-09-02 09:50:08 -05:00
Eric F Crist
a675fc9941 Correct --copy-ext var, update changelog
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-09-02 09:40:12 -05:00
Eric F Crist
243f729a77 Merge branch 'vifo-master'
Fixes typo in a138c0d (#139) with "16" inside quotes.

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-25 07:32:43 -05:00
Victor Foitzik
9fccc3373c Fix error in random serial generation. 2017-08-25 07:39:20 +00:00
Eric F Crist
a127286191 Remove inactive user fingerprint from project.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 21:08:52 -05:00
Eric F Crist
83a1a21e7a Add --copy-ext option
Adding the --copy-ext option to copy request extension data.  This will
resolve #60 and other Subject Alternative Name "issues" that have been
created.

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 20:52:26 -05:00
Eric F Crist
4ba461deeb Merge branch 'alexz-kh-master'
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 20:05:46 -05:00
Eric F Crist
3468f64257 Merge branch 'master' of https://github.com/alexz-kh/easy-rsa into alexz-kh-master 2017-08-22 20:05:04 -05:00
Eric F Crist
39e79476e6 Merge branch 'oreinert-contrib'
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 19:59:05 -05:00
Eric F Crist
40d102a2d7 Merge branch 'contrib' of https://github.com/oreinert/easy-rsa into oreinert-contrib 2017-08-22 19:58:18 -05:00
Eric F Crist
7221d4539c Merge branch 'uwehermann-openssl_rand' 2017-08-22 19:54:58 -05:00
Eric F Crist
601a5ca918 Merge pull request from uwehermann
Merge branch 'openssl_rand' of https://github.com/uwehermann/easy-rsa into uwehermann-openssl_rand
2017-08-22 19:53:02 -05:00
Eric F Crist
be9a4cfcd3 Adding license for mktemp
Adding text for the mktemp licensing.

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 08:16:53 -05:00
Eric F Crist
a0b5a9c7b2 Adding mktemp binary
Retrieved binary from http://gnuwin32.sourceforge.net/packages/mktemp.htm
This was tested on Windows 7

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-22 07:51:05 -05:00
Eric F Crist
dc8376a75d Add missing Windows binaries
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-08-21 17:36:58 -05:00
Uwe Hermann
a138c0d83b Fix incorrect "openssl rand" usage (#138). 2017-08-19 18:17:43 +02:00
Olav Reinert
d20d2b3c06 Update docs and examples to fit changes in 534f673 2017-07-27 08:27:27 +02:00
azvyagintsev
4eac410bce Fix string comprehension
- "[[" syntax work only in "Bash"
2017-07-04 20:14:57 +03:00
Eric Crist
0fcdc33783 Merge pull request #128 from oreinert/contrib
Make $PWD/pki the default PKI location
2017-06-30 18:18:37 -05:00
Eric Crist
f480de2b77 Merge pull request #133 from mschmitt/no-smime
Default SAN in server certs, serial randomization
2017-06-30 18:09:53 -05:00
Martin Schmitt
e9e8e272e0 Moved @ValdikSS's serial randomization to sign_req 2017-06-30 17:21:10 +02:00
Martin Schmitt
6436eaf8c1 Add CN as SAN (if none requested) on server certs by default 2017-06-30 16:12:13 +02:00
Olav Reinert
534f673459 Make $PWD/pki the default PKI location 2017-06-05 23:41:14 +02:00
Eric Crist
5a429d22c7 Merge pull request #98 from jtyr/jtyr-fix
Fix comment indicating the end of the function
2016-06-29 10:15:15 -05:00
Eric Crist
b8497a3610 Merge pull request #99 from mattock/readme
Convert README and COPYING into markdown files
2016-06-29 10:04:19 -05:00
Samuli Seppänen
b75faa475f Convert README and COPYING into markdown files
Signed-off-by: Samuli Seppänen <samuli@openvpn.net>
2016-06-22 19:02:23 +03:00
Jiri Tyr
fb4d8d8e26 Fix comment indicating the end of the function
This patch corrects the comment indicating the end of the `verify_file()` function.
2016-06-21 14:17:34 +01:00
Eric Crist
b887f3bf1a Merge pull request #92 from websafe/master
Fixes #91 basename: invalid option -- 's'.
2016-05-09 17:33:57 -05:00
Eric Crist
de2b5bee95 Merge pull request #96 from drewandersonnz/doc-fixes
docs: spelling fixes and setence structure improvements
2016-05-09 17:20:19 -05:00
Drew Anderson
b93d0a1675 spelling fixes and setence structure improvements 2016-05-09 10:24:02 +10:00
Thomas Szteliga
29d4dee508 Fixes #91 basename: invalid option -- 's'. 2016-03-21 17:25:58 +01:00
Eric Crist
f174800136 Merge pull request #87 from ValdikSS/gen-serial
Generate random serial number for all certificates
2016-02-29 14:04:14 -06:00
ValdikSS
d309c6aaa2 Generate random serial number for all certificates 2016-02-29 21:30:53 +03:00
Eric F Crist
3ec4f245dd Merge branch 'sskaje-master': Correct bad move operation 2015-10-25 23:01:47 -05:00
Eric F Crist
97a4852c65 Merge branch 'master' of https://github.com/sskaje/easy-rsa into sskaje-master 2015-10-25 22:59:24 -05:00
Eric F Crist
6e643f7224 Corrected output path for zip file in build tool
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2015-10-25 22:51:55 -05:00
Eric F Crist
d92d29803b Repackaging to include Windows utilities needed.
In the 3.0.0 release, Windows utilities were mistakenly omitted from the
package.  The build utility has been updated to include these files, as
well as to convert the .md documentation files to html.

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2015-10-25 22:37:17 -05:00
Eric F Crist
21ac0a76bc Use tmp file for gen-crl output
The mv operation following the CRL creation isn't useful as there is no
temp file to move.  Instead, create the temp file during CRL creation,
preventing a potential overwrite of a previous, valid, CRL.

Thanks go to matteo.guglielmi@epfl.ch for this patch (via email).

Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2015-09-09 18:19:22 -05:00
sskaje
02e490f436 Fix Bad move in gen_curl
Error msg:

Note: using Easy-RSA configuration from: ./vars
Using configuration from /Users/sskaje/Work/CA/Easy/openssl-1.0.cnf
Enter pass phrase for /Users/sskaje/Work/CA/Easy/pki/private/ca.key:
mv: /Users/sskaje/Work/CA/Easy/pki/crl.pem.tpH4U0wpn3: No such file or directory

An updated CRL has been created.
CRL file: /Users/sskaje/Work/CA/Easy/pki/crl.pem
2015-09-03 20:38:37 +08:00
Eric F Crist
7c1fa0a258 Add GPG key info for Eric Crist
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2015-09-02 20:01:34 -05:00
Eric F Crist
ed597da0fc Prepare for v3.0.0 release
* Update ChangeLog to reflect minor last-minute commits.
* Modify build-dist.sh to create both zip and tgz files
* Add notable changes to Upgrade-Notes
2015-09-02 19:53:04 -05:00
Eric Crist
f2f4ac8eb8 Merge pull request #32 from roubert/utf-8
Pass the flag -utf8 to openssl to interpret field values as UTF-8.
2015-09-02 18:40:08 -05:00
Eric Crist
8b42eead58 Merge pull request #61 from keros/change_default_private_key_encryption
changed default encrpytion algorithmus for keyfiles from des3 to aes256
2015-09-02 18:33:59 -05:00
Fredrik Roubert
e269c7fa84 Pass the flag -utf8 to openssl to interpret field values as UTF-8.
By default, field values are interpreted as ASCII but UTF-8 would be a
more reasonable default. Without the -utf8 flag, non-ASCII text gets
garbled without warning. ASCII text works fine either way.
2015-08-31 13:23:09 +02:00
Eric Crist
cd270b48a2 Merge pull request #66 from ljani/patch-1
ljani: Fix typo Helllman
2015-08-30 22:20:54 -05:00
Eric Crist
34b87846ea Merge pull request #26 from luizluca/temp_files_even_simplier
luizluca: use temp files.  clean up is more stream lined and errors prevent loss of working files.
2015-08-30 22:20:11 -05:00
Jani
3ab4a07c16 Fix typo: Helllman 2015-07-09 00:18:50 +03:00
keros
3124b41923 changed default encrpytion algorithmus for keyfiles from des3 to aes256 2015-05-13 12:14:05 +00:00
keros
d89231ab2d Revert "changed default encrpytion algorithmus for keyfiles from des3 to aes256"
This reverts commit cf9e4731b8f2170e529e8b18d64f8f21883ecb85.
2015-05-13 12:11:31 +00:00