Changeset 9a1c6a74 for postlfs/security/cacerts.xml
- Timestamp:
- 06/17/2012 10:46:50 AM (12 years ago)
- Branches:
- 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 12.0, 12.1, 7.10, 7.4, 7.5, 7.6, 7.6-blfs, 7.6-systemd, 7.7, 7.8, 7.9, 8.0, 8.1, 8.2, 8.3, 8.4, 9.0, 9.1, basic, bdubbs/svn, elogind, gnome, kde5-13430, kde5-14269, kde5-14686, kea, ken/TL2024, ken/inkscape-core-mods, ken/tuningfonts, krejzi/svn, lazarus, lxqt, nosym, perl-modules, plabs/newcss, plabs/python-mods, python3.11, qt5new, rahul/power-profiles-daemon, renodr/vulkan-addition, systemd-11177, systemd-13485, trunk, upgradedb, xry111/intltool, xry111/llvm18, xry111/soup3, xry111/test-20220226, xry111/xf86-video-removal
- Children:
- 3a35e94
- Parents:
- 23b0f4fc
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
postlfs/security/cacerts.xml
r23b0f4fc r9a1c6a74 99 99 my $incert = 0; 100 100 101 while ( <IN> ) 101 while ( <IN> ) 102 102 { 103 if ( /^CKA_VALUE MULTILINE_OCTAL/ ) 103 if ( /^CKA_VALUE MULTILINE_OCTAL/ ) 104 104 { 105 105 $incert = 1; 106 106 open( OUT, "|openssl x509 -text -inform DER -fingerprint" ) 107 107 || die "could not pipe to openssl x509"; 108 } 109 110 elsif ( /^END/ && $incert ) 108 } 109 110 elsif ( /^END/ && $incert ) 111 111 { 112 112 close( OUT ); 113 113 $incert = 0; 114 114 print "\n\n"; 115 } 116 117 elsif ($incert) 115 } 116 117 elsif ($incert) 118 118 { 119 119 my @bs = split( /\\/ ); 120 foreach my $b (@bs) 120 foreach my $b (@bs) 121 121 { 122 122 chomp $b; … … 167 167 TRUSTATTRIBUTES="CKA_TRUST_SERVER_AUTH" 168 168 BUNDLE="BLFS-ca-bundle-${VERSION}.crt" 169 CONVERTSCRIPT=" make-cert.pl"169 CONVERTSCRIPT="/bin/make-cert.pl" 170 170 SSLDIR="/etc/ssl" 171 171 … … 203 203 # Throw a meaningful error and remove the file 204 204 cp "${tempfile}" tempfile.cer 205 "${CONVERTSCRIPT}"> tempfile.crt205 perl ${CONVERTSCRIPT} > tempfile.crt 206 206 keyhash=$(openssl x509 -noout -in tempfile.crt -hash) 207 207 echo "Certificate ${keyhash} is not trusted! Removing..." … … 214 214 215 215 cp "${tempfile}" tempfile.cer 216 "${CONVERTSCRIPT}"> tempfile.crt216 perl ${CONVERTSCRIPT} > tempfile.crt 217 217 keyhash=$(openssl x509 -noout -in tempfile.crt -hash) 218 218 mv tempfile.crt "certs/${keyhash}.pem" … … 362 362 <term><command>make-cert.pl</command></term> 363 363 <listitem> 364 <para>is a utility <application>perl</application> script that 364 <para>is a utility <application>perl</application> script that 365 365 converts a single binary certificate (.der format) into .pem format.</para> 366 366 <indexterm zone="cacerts make-cert"> … … 373 373 <term><command>remove-expired-certs.sh</command></term> 374 374 <listitem> 375 <para>is a utility <application>perl</application> script that 375 <para>is a utility <application>perl</application> script that 376 376 removes expired certificates from a directory. The default 377 377 directory is <filename class='directory'>/etc/ssl/certs</filename>.</para>
Note:
See TracChangeset
for help on using the changeset viewer.