diff --git a/back/lib/ssl_peer_add b/back/lib/ssl_peer_add index 837d63f..849f690 100755 --- a/back/lib/ssl_peer_add +++ b/back/lib/ssl_peer_add @@ -59,14 +59,16 @@ if ! sudo chmod 400 "${SSL_CONFIG_DIR}/${username}/${hostname}/server.key" >>"${ fi # Generate config -which cat >>"${LOGFILE}" san="\n[SAN]\nsubjectAltNames=DNS:${hostname}.${username}.${TLD},DNS:*.${hostname}.${username}.${TLD}" [ "${ipstring}" != "" ] && san="${san},${ipstring}" +printf "${san}" >>"${LOGFILE}" +set -x if ! printf '%s' "${san}" | sudo cat '/etc/ssl/openssl.cnf' /dev/stdin \ | sudo tee "${SSL_CONFIG_DIR:?}/${username:?}/${hostname:?}.cnf"; then printf 'Failed to generate %s/%s.cnf\n' "${username}" "${hostname}" >>"${LOGFILE}" exit 7 fi +set +x sudo tail "${SSL_CONFIG_DIR:?}/${username:?}/${hostname:?}.cnf" >>"${LOGFILE}" # Generate CSR