From 282144900f50835ab74bd2613e7d7d546626cfb6 Mon Sep 17 00:00:00 2001 From: nayasam <76075183+nayasam@users.noreply.github.com> Date: Tue, 5 Jan 2021 04:58:04 -0500 Subject: [PATCH] Adding support to configure openssl path (#112) * Update ha.sh * Update replicate.sh --- lib/ha.sh | 1 + replicate.sh | 10 +++++----- 2 files changed, 6 insertions(+), 5 deletions(-) diff --git a/lib/ha.sh b/lib/ha.sh index 0f0ac5f..d1148a0 100644 --- a/lib/ha.sh +++ b/lib/ha.sh @@ -29,6 +29,7 @@ # SSH=ssh SCP=scp +OPENSSL=openssl # # if this file exists, source it to set any local customizations to the execution environment diff --git a/replicate.sh b/replicate.sh index 0700c55..053dda7 100644 --- a/replicate.sh +++ b/replicate.sh @@ -1764,8 +1764,8 @@ if $ssl_replication ; then # # make a CA # - openssl genrsa 2048 > $CERTS/ca-key.pem 2>/dev/null - openssl req -new -x509 -nodes -days 3650 \ + $OPENSSL genrsa 2048 > $CERTS/ca-key.pem 2>/dev/null + $OPENSSL req -new -x509 -nodes -days 3650 \ -key $CERTS/ca-key.pem -out $CERTS/ca-cert.pem -subj "/CN=ca" >/dev/null 2>&1 # @@ -1774,11 +1774,11 @@ if $ssl_replication ; then for cn in $primary $secondary ; do base=$CERTS/$cn echo "making host $cn keypair" - openssl req -newkey rsa:2048 \ + $OPENSSL req -newkey rsa:2048 \ -subj "/CN=$cn" -nodes -days 3650 \ -keyout $base-private.pem -out $base-public.pem >/dev/null 2>&1 - openssl rsa -in $base-private.pem -out $base-private.pem >/dev/null 2>&1 - openssl x509 -req -days 3560 -set_serial 01 \ + $OPENSSL rsa -in $base-private.pem -out $base-private.pem >/dev/null 2>&1 + $OPENSSL x509 -req -days 3560 -set_serial 01 \ -in $base-public.pem -out $base-cert.pem \ -CA $CERTS/ca-cert.pem -CAkey $CERTS/ca-key.pem >/dev/null 2>&1 done