Richard Bonhomme
185a5b671f
libressl: use make_ssl_config and safessl-easyrsa.cnf for sign_req
2018-08-23 21:12:39 +01:00
Richard Bonhomme
247199489e
libressl: use make_ssl_config and safessl-easyrsa.cnf for gen_req
2018-08-23 21:10:57 +01:00
Richard Bonhomme
95871dca5e
libressl: use make_ssl_config and safessl-easyrsa.cnf for build_ca
2018-08-23 21:05:26 +01:00
Richard Bonhomme
af9b01944e
libressl: use make_ssl_config() for easyrsa openssl version check
2018-08-23 20:36:48 +01:00
Richard Bonhomme
9fafe1c352
libressl: add notify SSL library in use
2018-08-23 20:29:35 +01:00
Richard Bonhomme
6c171b7882
libressl: switch to using safessl-easyrsa.cnf
...
Keep openssl-easyrsa.cnf but switch to using safessl-easyrsa.cnf
Has the benefit of fixing easyrsa3 openssl version check for libressl
2018-08-23 20:22:43 +01:00
Richard Bonhomme
b647256313
libressl: introduce function make_ssl_config
...
This function reads openssl-easyrsa.cnf and then
removes "ENV::" and replaces "$vars" with value
then writes the results to safessl-easyrsa.cnf
2018-08-23 20:12:55 +01:00
Richard Bonhomme
000b47712a
libressl: prepare openssl-easyrsa.cnf for use with libressl
2018-08-23 20:03:36 +01:00
Richard Bonhomme
3f4e77092d
libressl: add esayrsa3/safessl-easyrsa.cnf to .gitignore
2018-08-23 19:57:51 +01:00
Eric F Crist
af796ad839
Update ChangeLog
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 09:27:54 -06:00
Eric F Crist
f241bad2d7
Merge branch 'Antagonym-nopass-fix'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 09:23:35 -06:00
Hugues Fafard
63224439a6
Fixed broken nopass option in build-ca subcommand
2018-02-26 15:53:08 +01:00
Eric F Crist
d37a608944
merge branch 'honor-vars' of https://github.com/Antagonym/easy-rsa into v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:34:23 -06:00
Eric F Crist
67f76dafe0
Remove quotes around $pkcs_opts
...
Credit to @OtherSystems and @Antagonym and some others who pointed this out. This
resolves #189 and #193 and #186 and #179 .
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:26:49 -06:00
Hugues Fafard
8b728d6a9e
Merge remote-tracking branch 'upstream/v3.0.5' into honor-vars
2018-02-26 14:22:19 +01:00
Eric F Crist
cf192ae57a
Merge branch 'kodieGlosser-fix-travis-checks'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:16:34 -06:00
Eric F Crist
9708b2afc4
Merge branch 'kodieGlosser-fix-travis-checks' into v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:15:51 -06:00
Kodie Glosser
1968cb0259
formatting and travis fix
2018-02-21 10:55:15 -06:00
Hugues Fafard
9f5267a0a7
Honor priv-key related settings during build-ca
...
The EASYRSA_ALGO, EASYRSA_KEY_SIZE, and EASYRSA_CURVE settings in
`vars`, as well as their runtime overrides are ignored during `build-ca`
since 6268cd9. This restores previous behavior of honring the settings.
Should also fix #179 .
2018-02-10 17:53:51 +01:00
Eric F Crist
f693420e48
Fix format string for printf
...
I've gotta be doing this wrong... (I mean git.)
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-01 18:03:01 -06:00
Eric F Crist
ca201d7ba8
Fix format string in printf
...
I knew this was hanging out there, but Antagoynm found it before I was
able to resolve it. There was a message from shellcheck regarding this
one:
SC2059: Don't use variables in the printf format string. Use
printf "..%s.." "$foo".
Should resolve #181
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-01 17:59:17 -06:00
Eric F Crist
933a7dc52f
Merge branch 'l0010o0001l-master'
2018-01-25 08:10:18 -06:00
Eric F Crist
7ebd09221f
Merge branch 'master' of https://github.com/l0010o0001l/easy-rsa into l0010o0001l-master
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-25 08:09:53 -06:00
Eric F Crist
759cf3d42a
Update KNOWN_ISSUES, remove #24
...
This closes #151 .
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-25 08:00:26 -06:00
Eric F Crist
5b72997d4b
Update ChangeLog
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 23:45:49 -06:00
Eric F Crist
a1ed80517b
Use stty -echo instead of read -s
...
Some Linux distros and BSD sh don't support the -s option to the read
builin. This is the POSIX way to handle secure input to a tty.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 23:41:07 -06:00
Eric F Crist
fae653879e
Default CA key to AES256
...
Defaults the CA key created using AES256.
This resolves #58 and resolves #17
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 11:10:25 -06:00
Eric F Crist
f431d83c27
Update ChangeLog for future v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 10:16:03 -06:00
Eric F Crist
3861b37672
Merge branch 'v3.0.4'
...
Merging up to master.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 10:13:34 -06:00
Eric F Crist
ab8fa4803d
Wrong SC code.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:39:09 -06:00
Eric F Crist
6e69b85e3e
additional automation
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:36:14 -06:00
Eric F Crist
9bd030e603
.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:26:03 -06:00
Eric F Crist
4f391af108
There has to be a better way...
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:55:05 -06:00
Eric F Crist
612f15c8fa
:\
...
Seriously though, more automation.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:44:18 -06:00
Eric F Crist
01b523d2d9
More breakage for automated tests
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:34:45 -06:00
Eric F Crist
972a999a40
This breaks stuff (probably)
...
Attempts at making shellcheck happy and a little bit of sanity checking
for travis-ci. Going to try and get some basic easyrsa commands going
next, once I figure out what travis-ci's environment looks like.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 18:54:23 -06:00
Eric F Crist
c60ffa587d
Merge branch 'pillarsdotnet-v3.0.4' into v3.0.4
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 17:43:31 -06:00
Eric F Crist
b761374eeb
Merge branch 'pillarsdotnet-master'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 17:38:20 -06:00
Bob Vincent
da1942a2ab
Allow "--copy-ext" without a value. ( https://github.com/OpenVPN/easy-rsa/pull/153 )
2018-01-02 16:53:15 -05:00
Bob Vincent
7799d78cac
Fix the --subject-alt-name option.
2018-01-02 16:53:13 -05:00
Bob Vincent
be20590d50
Allow "--copy-ext" without a value. ( https://github.com/OpenVPN/easy-rsa/pull/153 )
2018-01-02 16:52:16 -05:00
Bob Vincent
32a35bb18b
Fix the --subject-alt-name option.
2018-01-02 16:50:14 -05:00
Bob Vincent
afeb05b502
Fix generation of serverAltName.
2018-01-01 13:43:42 -05:00
Bob Vincent
d3f1da5abe
Fix generation of serverAltName.
2018-01-01 13:41:18 -05:00
Eric F Crist
afd9bc0a4a
Correct subjectAltName errors in server sign
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-12-24 10:00:20 -06:00
Eric F Crist
6008c45af5
Update README, address vx.x.x branches (new v3.0.4)
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-12-20 21:40:38 -06:00
Eric F Crist
5da67665fa
Declare some additional variables
...
Further fixes for #167 pointed out by bjoernv. Thanks!
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-12-20 21:18:25 -06:00
Eric F Crist
8fd8bdd59a
Merge branch 'master' of https://github.com/OpenVPN/easy-rsa
2017-12-15 08:48:09 -06:00
Eric F Crist
e1fa3a02bb
Add link to POSIX standard.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-12-15 08:47:43 -06:00
Eric F Crist
e48a065087
set input as var, not function call
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2017-12-14 22:02:23 -06:00