Skip to content
Snippets Groups Projects
Commit 941d9af7 authored by nimrod's avatar nimrod
Browse files

Self-signed certificate generation.

By default the cerificate is valid for 30 days, reasonable. Also, using
-batch means the default values are used and the certificate is
generated without any input required.
parent 468f3143
No related branches found
No related tags found
No related merge requests found
Pipeline #445 passed
...@@ -15,8 +15,7 @@ RUN rm -rf /etc/nginx/conf./* && \ ...@@ -15,8 +15,7 @@ RUN rm -rf /etc/nginx/conf./* && \
-keyout /var/ssl/site.key \ -keyout /var/ssl/site.key \
-nodes \ -nodes \
-out /var/ssl/site.crt \ -out /var/ssl/site.crt \
-days 2 \ -batch && \
-subj "/C=US/ST=IL/L=None/O=None/OU=None/CN=localhost/" && \
setcap CAP_NET_BIND_SERVICE=+ep "$(command -v nginx)" && \ setcap CAP_NET_BIND_SERVICE=+ep "$(command -v nginx)" && \
chown nginx /var/ssl/site.* chown nginx /var/ssl/site.*
COPY www/ /var/www/ COPY www/ /var/www/
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment