Always generate an openssl-easyrsa.cnf or x509-types tmp-file#1401
Merged
TinCanTech merged 10 commits intoOpenVPN:masterfrom Oct 24, 2025
Merged
Always generate an openssl-easyrsa.cnf or x509-types tmp-file#1401TinCanTech merged 10 commits intoOpenVPN:masterfrom
openssl-easyrsa.cnf or x509-types tmp-file#1401TinCanTech merged 10 commits intoOpenVPN:masterfrom
Conversation
Signed-off-by: Richard T Bonhomme <[email protected]>
select_ssl_cnf_tmp() will either use an existing openssl-easyrsa.cnf file or create an unexpanded default file. Either file is then stored as a tmp-file and exported for use via $EASYRSA_SSL_CONF. Signed-off-by: Richard T Bonhomme <[email protected]>
34537ad to
538ad3d
Compare
openssl easyrsa cnf tmp-fileopenssl-easyrsa.cnf tmp-file
select_x509_type_tmp() will either use an existing X509-type file or create a tmp-file for supported types. For unsupported types, the user must supply an X509-type file. This compliments select_ssl_cnf_tmp() (538ad3d) behavior, now ALL support files are copied to a tmp-file prior to use and possible changes. For simplicity, this patch ONLY implements select_x509_type_tmp() for command build-ca. Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
…OMMON Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
Signed-off-by: Richard T Bonhomme <[email protected]>
openssl-easyrsa.cnf tmp-fileopenssl-easyrsa.cnf or x509-types tmp-file
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Details:
select_ssl_cnf_tmp()will either use an existingopenssl-easyrsa.cnffile orcreate an unexpanded default file. Either file is then stored as a tmp-file
and exported for use via
$EASYRSA_SSL_CONF.select_x509_type_tmp()will either use an existing X509-type file orcreate a tmp-file for supported types. For unsupported types, the user
must supply an X509-type file.
Returns a tmp-file as
$new_x509_type_file_tmp, for use as per the the X509-type requested.