|
31 | 31 | # fpki-cert.der |
32 | 32 | # fpki-certpol-cert.der |
33 | 33 | # rid-cert.der |
| 34 | +# aia/ca-issuers-cert.pem |
| 35 | +# aia/multi-aia-cert.pem |
| 36 | +# aia/overflow-aia-cert.pem |
34 | 37 | # updates the following crls: |
35 | 38 | # crl/cliCrl.pem |
36 | 39 | # crl/crl.pem |
@@ -292,6 +295,60 @@ run_renewcerts(){ |
292 | 295 | echo "End of section" |
293 | 296 | echo "---------------------------------------------------------------------" |
294 | 297 | ############################################################ |
| 298 | + ########## update AIA test certs ########################### |
| 299 | + ############################################################ |
| 300 | + echo "Updating AIA test certs" |
| 301 | + echo "" |
| 302 | + mkdir -p aia |
| 303 | + |
| 304 | + echo "Updating aia/ca-issuers-cert.pem" |
| 305 | + echo "" |
| 306 | + openssl req -new -newkey rsa:2048 -nodes -keyout aia/ca-issuers-key.pem -subj "/CN=wolfssl-aia-test" -out aia/ca-issuers-cert.csr |
| 307 | + check_result $? "Step AIA-1" |
| 308 | + |
| 309 | + openssl x509 -req -in aia/ca-issuers-cert.csr -days 365 -extfile wolfssl.cnf -extensions aia_ca_issuers -signkey aia/ca-issuers-key.pem -out aia/ca-issuers-cert.pem |
| 310 | + check_result $? "Step AIA-2" |
| 311 | + rm aia/ca-issuers-cert.csr |
| 312 | + |
| 313 | + openssl x509 -in aia/ca-issuers-cert.pem -text > tmp.pem |
| 314 | + check_result $? "Step AIA-3" |
| 315 | + mv tmp.pem aia/ca-issuers-cert.pem |
| 316 | + rm aia/ca-issuers-key.pem |
| 317 | + echo "End of section" |
| 318 | + echo "---------------------------------------------------------------------" |
| 319 | + |
| 320 | + echo "Updating aia/multi-aia-cert.pem" |
| 321 | + echo "" |
| 322 | + openssl req -new -newkey rsa:2048 -nodes -keyout aia/multi-aia-key.pem -subj "/CN=wolfssl-aia-multi-test" -out aia/multi-aia-cert.csr |
| 323 | + check_result $? "Step AIA-4" |
| 324 | + |
| 325 | + openssl x509 -req -in aia/multi-aia-cert.csr -days 365 -extfile wolfssl.cnf -extensions aia_multi -signkey aia/multi-aia-key.pem -out aia/multi-aia-cert.pem |
| 326 | + check_result $? "Step AIA-5" |
| 327 | + rm aia/multi-aia-cert.csr |
| 328 | + |
| 329 | + openssl x509 -in aia/multi-aia-cert.pem -text > tmp.pem |
| 330 | + check_result $? "Step AIA-6" |
| 331 | + mv tmp.pem aia/multi-aia-cert.pem |
| 332 | + rm aia/multi-aia-key.pem |
| 333 | + echo "End of section" |
| 334 | + echo "---------------------------------------------------------------------" |
| 335 | + |
| 336 | + echo "Updating aia/overflow-aia-cert.pem" |
| 337 | + echo "" |
| 338 | + openssl req -new -newkey rsa:2048 -nodes -keyout aia/overflow-aia-key.pem -subj "/CN=wolfssl-aia-overflow-test" -out aia/overflow-aia-cert.csr |
| 339 | + check_result $? "Step AIA-7" |
| 340 | + |
| 341 | + openssl x509 -req -in aia/overflow-aia-cert.csr -days 365 -extfile wolfssl.cnf -extensions aia_overflow -signkey aia/overflow-aia-key.pem -out aia/overflow-aia-cert.pem |
| 342 | + check_result $? "Step AIA-8" |
| 343 | + rm aia/overflow-aia-cert.csr |
| 344 | + |
| 345 | + openssl x509 -in aia/overflow-aia-cert.pem -text > tmp.pem |
| 346 | + check_result $? "Step AIA-9" |
| 347 | + mv tmp.pem aia/overflow-aia-cert.pem |
| 348 | + rm aia/overflow-aia-key.pem |
| 349 | + echo "End of section" |
| 350 | + echo "---------------------------------------------------------------------" |
| 351 | + ############################################################ |
295 | 352 | ########## update the self-signed ca-cert-chain.der ######## |
296 | 353 | ############################################################ |
297 | 354 | echo "Updating ca-cert-chain.der" |
|
0 commit comments