Merge abe957b700bf064dc6a7dcbdeeca8d3ccd29c9ba into 309bec474f11c1c9a2be472c44818703bfe6d911

This commit is contained in:
hiska 2017-08-22 18:10:30 +00:00 committed by GitHub
commit 045444c717
2 changed files with 40 additions and 0 deletions

View File

@ -80,3 +80,9 @@ acme.sh --deploy -d ftp.example.com --deploy-hook exim4
```sh ```sh
acme.sh --deploy -d ftp.example.com --deploy-hook keychain acme.sh --deploy -d ftp.example.com --deploy-hook keychain
``` ```
## 7. Deploy the cert to local strongswan server.
```sh
acme.sh --deploy -d ftp.example.com --deploy-hook strongswan
```

34
deploy/strongswan.sh Normal file
View File

@ -0,0 +1,34 @@
#!/usr/bin/env sh
#Here is a sample custom api script.
#This file name is "myapi.sh"
#So, here must be a method myapi_deploy()
#Which will be called by acme.sh to deploy the cert
#returns 0 means success, otherwise error.
######## Public functions #####################
#domain keyfile certfile cafile fullchain
strongswan_deploy() {
_cdomain="$1"
_ckey="$2"
_ccert="$3"
_cca="$4"
_cfullchain="$5"
_debug _cdomain "$_cdomain"
_debug _ckey "$_ckey"
_debug _ccert "$_ccert"
_debug _cca "$_cca"
_debug _cfullchain "$_cfullchain"
cat "$_ckey" >"/etc/ipsec.d/private/$(basename "$_ckey")"
cat "$_ccert" >"/etc/ipsec.d/certs/$(basename "$_ccert")"
cat "$_cca" >"/etc/ipsec.d/cacerts/$(basename "$_cca")"
cat "$_cfullchain" >"/etc/ipsec.d/cacerts/$(basename "$_cfullchain")"
ipsec secrets
return 0
}