Eric F Crist
ad00be3411
Merge branch 'TinCanTech-master'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-09-07 09:19:17 -05:00
Eric F Crist
083b125064
Merge branch 'master' of https://github.com/OpenVPN/easy-rsa
2018-09-07 09:18:32 -05:00
Eric F Crist
7e750b4caa
Merge branch 'master' of https://github.com/TinCanTech/easy-rsa into TinCanTech-master
2018-09-07 09:18:06 -05:00
Eric F Crist
a6192a7fe9
Update copyright date.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-09-07 09:14:27 -05:00
Richard Bonhomme
4d084268b8
Fix set_pass() 'nopass' option
2018-09-07 13:23:35 +01:00
Eric F Crist
1eccb90148
Correct sed work on version replacement
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-08-23 17:01:55 -05:00
Eric F Crist
376c62f2b8
Update default certificate length, comments
...
- Resolve #57 , set default certificate length to 1080 days, leaves CA
certifcates at 3650
- Add EasyRSA version to certificate comment for later troubleshooting
and identification.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-08-23 16:51:17 -05:00
Eric F Crist
93b0f2e74b
Add LibreSSL support to EasyRSA
...
Merge branch 'TinCanTech-libressl'
This may also resolve the following issues:
#130 : cmd-opts nopass doesn't work
#76 : LibreSSL exposes misuse of $ENV
#74 : LibreSSL, Expected to find openssl command at: openssl
#34 : unexpected EOF when using init-pki on OSX 10.9
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-08-23 16:32:09 -05:00
Eric F Crist
e4fe9dd441
Add LibreSSL support to EasyRSA
...
Merge branch 'libressl' of https://github.com/TinCanTech/easy-rsa into TinCanTech-libressl
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-08-23 16:31:14 -05:00
Eric F Crist
f22cd26caa
gah
2018-08-23 16:23:57 -05:00
Eric F Crist
81dfc91e1a
Travis-CI, yay!
...
:\
2018-08-23 16:16:29 -05:00
Eric F Crist
f9e659a540
shellcheck provided in travis-ci by default
...
Apparently no longer required to install shellcheck in the travis-ci
environment. See https://github.com/koalaman/shellcheck/wiki/TravisCI
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-08-23 16:10:22 -05:00
Richard Bonhomme
815d45a008
libressl: minor style corrections
2018-08-23 21:26:30 +01:00
Richard Bonhomme
e9d6393da3
libressl: use make_ssl_config and safessl-easyrsa.cnf for revoke
2018-08-23 21:20:53 +01:00
Richard Bonhomme
d1e72d4ea7
libressl: use make_ssl_config and safessl-easyrsa.cnf for gen_crl
2018-08-23 21:16:32 +01:00
Richard Bonhomme
93785e1e25
libressl: use make_ssl_config and safessl-easyrsa.cnf for sign_req
2018-08-23 21:12:39 +01:00
Richard Bonhomme
95d26a3840
libressl: use make_ssl_config and safessl-easyrsa.cnf for gen_req
2018-08-23 21:10:57 +01:00
Richard Bonhomme
97681d486d
libressl: use make_ssl_config and safessl-easyrsa.cnf for build_ca
2018-08-23 21:05:26 +01:00
Richard Bonhomme
f13b8c7a03
libressl: use make_ssl_config() for easyrsa openssl version check
2018-08-23 20:36:48 +01:00
Richard Bonhomme
2688e2493d
libressl: add notify SSL library in use
2018-08-23 20:29:35 +01:00
Richard Bonhomme
673f158230
libressl: switch to using safessl-easyrsa.cnf
...
Keep openssl-easyrsa.cnf but switch to using safessl-easyrsa.cnf
Has the benefit of fixing easyrsa3 openssl version check for libressl
2018-08-23 20:22:43 +01:00
Richard Bonhomme
8feb0f24fe
libressl: introduce function make_ssl_config
...
This function reads openssl-easyrsa.cnf and then
removes "ENV::" and replaces "$vars" with value
then writes the results to safessl-easyrsa.cnf
2018-08-23 20:12:55 +01:00
Richard Bonhomme
cfab21f79f
libressl: prepare openssl-easyrsa.cnf for use with libressl
2018-08-23 20:03:36 +01:00
Richard Bonhomme
185f3ee03e
libressl: add esayrsa3/safessl-easyrsa.cnf to .gitignore
2018-08-23 19:57:51 +01:00
Eric F Crist
ff07d754f5
Update ChangeLog
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 09:27:54 -06:00
Eric F Crist
45cd588fec
Merge branch 'Antagonym-nopass-fix'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 09:23:35 -06:00
Hugues Fafard
a6be9e9df7
Fixed broken nopass option in build-ca subcommand
2018-02-26 15:53:08 +01:00
Eric F Crist
02532b2311
merge branch 'honor-vars' of https://github.com/Antagonym/easy-rsa into v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:34:23 -06:00
Eric F Crist
2ef2660470
Remove quotes around $pkcs_opts
...
Credit to @OtherSystems and @Antagonym and some others who pointed this out. This
resolves #189 and #193 and #186 and #179 .
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:26:49 -06:00
Hugues Fafard
6e35636879
Merge remote-tracking branch 'upstream/v3.0.5' into honor-vars
2018-02-26 14:22:19 +01:00
Eric F Crist
15dc703660
Merge branch 'kodieGlosser-fix-travis-checks'
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:16:34 -06:00
Eric F Crist
88723063a2
Merge branch 'kodieGlosser-fix-travis-checks' into v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-26 07:15:51 -06:00
Kodie Glosser
8836d509ae
formatting and travis fix
2018-02-21 10:55:15 -06:00
Hugues Fafard
ef31c6c2e1
Honor priv-key related settings during build-ca
...
The EASYRSA_ALGO, EASYRSA_KEY_SIZE, and EASYRSA_CURVE settings in
`vars`, as well as their runtime overrides are ignored during `build-ca`
since 6268cd9. This restores previous behavior of honring the settings.
Should also fix #179 .
2018-02-10 17:53:51 +01:00
Eric F Crist
76a9d5db29
Fix format string for printf
...
I've gotta be doing this wrong... (I mean git.)
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-01 18:03:01 -06:00
Eric F Crist
bdfbd51d7b
Fix format string in printf
...
I knew this was hanging out there, but Antagoynm found it before I was
able to resolve it. There was a message from shellcheck regarding this
one:
SC2059: Don't use variables in the printf format string. Use
printf "..%s.." "$foo".
Should resolve #181
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-02-01 17:59:17 -06:00
Eric F Crist
b39606577a
Merge branch 'l0010o0001l-master'
2018-01-25 08:10:18 -06:00
Eric F Crist
26f8622049
Merge branch 'master' of https://github.com/l0010o0001l/easy-rsa into l0010o0001l-master
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-25 08:09:53 -06:00
Eric F Crist
33974a5893
Update KNOWN_ISSUES, remove #24
...
This closes #151 .
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-25 08:00:26 -06:00
Eric F Crist
303f89a1d0
Update ChangeLog
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 23:45:49 -06:00
Eric F Crist
7f2dda12c2
Use stty -echo instead of read -s
...
Some Linux distros and BSD sh don't support the -s option to the read
builin. This is the POSIX way to handle secure input to a tty.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 23:41:07 -06:00
Eric F Crist
6268cd9653
Default CA key to AES256
...
Defaults the CA key created using AES256.
This resolves #58 and resolves #17
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 11:10:25 -06:00
Eric F Crist
1ce52f8120
Update ChangeLog for future v3.0.5
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 10:16:03 -06:00
Eric F Crist
4c58b5eb89
Merge branch 'v3.0.4'
...
Merging up to master.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-21 10:13:34 -06:00
Eric F Crist
dcc79b2319
Wrong SC code.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:39:09 -06:00
Eric F Crist
fefee6aa9f
additional automation
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:36:14 -06:00
Eric F Crist
7370b01a91
.
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 20:26:03 -06:00
Eric F Crist
1e882effaf
There has to be a better way...
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:55:05 -06:00
Eric F Crist
67ced150d5
:\
...
Seriously though, more automation.
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:44:18 -06:00
Eric F Crist
ef2e21e757
More breakage for automated tests
...
Signed-off-by: Eric F Crist <ecrist@secure-computing.net>
2018-01-03 19:34:45 -06:00