Update csr.sh

This commit is contained in:
2019-02-15 11:02:29 -05:00
parent a62be2c7e3
commit adf63c8915

32
csr.sh
View File

@@ -8,7 +8,7 @@ fi
DOMAIN="home.johnhgaunt.com" DOMAIN="home.johnhgaunt.com"
for i in $HOSTNAMES; do for i in $HOSTNAMES; do
openssl req -new -sha512 -nodes -out $i.$DOMAIN.csr -newkey rsa:4096 -keyout $i.$DOMAIN.key -config <( openssl req -new -sha512 -nodes -out $i.$DOMAIN.csr -newkey rsa:16384 -keyout $i.$DOMAIN.key -config <(
cat <<-EOF cat <<-EOF
[req] [req]
default_bits = 4096 default_bits = 4096
@@ -35,3 +35,33 @@ DNS.2 = $i
EOF EOF
) )
done done
# ECDSA key and csr
: '
openssl req -new -sha512 -nodes -newkey ec:<(openssl ecparam -name secp521r1) -keyout cert.key -out cert.csr -config <(
cat <<-EOF
[req]
prompt = no
default_md = sha512
req_extensions = req_ext
distinguished_name = dn
[ dn ]
C=US
ST=PA
L=Pittsburgh
O=Gaunt
OU=Gaunt
emailAddress=admin@johnhgaunt.com
CN=$i.$DOMAIN
[ req_ext ]
subjectAltName = @alt_names
[ alt_names ]
DNS.1 = $i.$DOMAIN
DNS.2 = $i
EOF
)
''