strongswan/testing/tkm/generate-config.sh
2023-07-13 12:41:51 +02:00

11 lines
378 B
Bash
Executable File

#!/bin/bash
openssl genrsa -out key.pem 2048
openssl rsa -in key.pem -outform der -out key.der -traditional
openssl req -x509 -nodes -newkey rsa:4096 -keyout cakey.pem -outform der \
-out ca.der -sha256 -subj "/CN=CA" -addext basicConstraints=critical,CA:TRUE
tkm_cfgtool -c /usr/local/share/tkm/tkm.conf -i swanctl.conf \
-t tkm.conf -s /usr/local/share/tkm/tkmconfig.xsd