changed to ssl cert via acme.sh install

This commit is contained in:
Nick Leffler 2020-06-19 10:42:54 -04:00
parent 90b19a5f35
commit 404ef2340b

View File

@ -38,20 +38,26 @@ fullURL="${siteProto}${siteURL}"
siteName="${siteTitle}"
}
genSSL () {
mkdir -p "/etc/nginx/ssl/${siteURL}/" || exit
openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout /etc/nginx/ssl/${siteURL}/key -out /etc/nginx/ssl/${siteURL}/crt \
-subj "/C=TT/ST=TT/L=TT/O=TEMP/OU=TEMP/CN=$siteURL/emailAddress=TEMP"
sslLocation="/etc/nginx/ssl/${siteURL}"
sslCert="/etc/nginx/ssl/${siteURL}/crt"
sslKey="/etc/nginx/ssl/${siteURL}/key"
genSSL () {
mkdir -p "${sslLocation}" || exit
sslCert="${sslLocation}/crt"
sslKey="${sslLocation}/key"
openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout "${sslKey}" -out "${sslCert}" -subj "/C=TT/ST=TT/L=TT/O=TEMP/OU=TEMP/CN=$siteURL/emailAddress=TEMP"
}
certbotSSL () {
"${acmebin}" --issue --dns dns_cf -d "${siteURL}" --reloadcmd "systemctl reload nginx" --force
mkdir -p "${sslLocation}" || exit
"${acmebin}" --issue --dns dns_cf -d "${siteURL}"
sslCert="/root/.acme.sh/${siteURL}/fullchain.cer"
sslKey="/root/.acme.sh/${siteURL}/${siteURL}.key"
# sslCert="${sslLocation}/crt"
sslKey="${sslLocation}/key"
sslCert="${sslLocation}/fullchain.crt"
acme.sh --install-cert -d "${siteURL}" --cert-file "${sslLocation}/crt" --key-file "${sslKey}" --fullchain-file "${sslCert}" --reloadcmd "systemctl reload nginx" --force
}
create_wp_db () {