X-Git-Url: https://gerrit.onap.org/r/gitweb?a=blobdiff_plain;f=conf%2FCA%2FnewIntermediate.sh;h=e09a4fcf002f2d8e84c78259b285e6a8869ea676;hb=c77226927523b821936debe660e880b713c88edc;hp=303c22e133bbc2eee87506358fe052cf60c862b7;hpb=5a081a25fd94da790a59a68195a19bc0ef7aa20c;p=aaf%2Fauthz.git diff --git a/conf/CA/newIntermediate.sh b/conf/CA/newIntermediate.sh index 303c22e1..e09a4fcf 100644 --- a/conf/CA/newIntermediate.sh +++ b/conf/CA/newIntermediate.sh @@ -4,7 +4,7 @@ if [ -e intermediate.serial ]; then ((SERIAL=`cat intermediate.serial` + 1)) else - SERIAL=1 + SERIAL=$(date +%s) fi echo $SERIAL > intermediate.serial DIR=intermediate_$SERIAL @@ -41,19 +41,18 @@ echo $SUBJECT $PASSPHRASE EOF - chmod 400 $DIR/private/$CN.key + chmod 400 $DIR/private/ca.key openssl req -verify -text -noout -in $DIR/$CN.csr # Sign it openssl ca -config openssl.conf -extensions v3_intermediate_ca \ -days 1826 \ - -cert certs/ca.crt -keyfile private/ca.key -out $DIR/certs/ca.crt \ + -cert certs/ca.crt -keyfile private/ca.key -out $DIR/certs/ca.crt \ -infiles $DIR/$CN.csr - openssl x509 -text -noout -in $DIR/certs/ca.crt + openssl x509 -text -noout -in $DIR/certs/ca.crt - - openssl verify -CAfile certs/ca.crt $DIR/certs/ca.crt + openssl verify -CAfile certs/ca.crt $DIR/certs/ca.crt # Create a Signer p12 script