diff --git a/certs/openssl.server.conf b/certs/openssl.server.conf index 4a14b2a..5faff28 100644 --- a/certs/openssl.server.conf +++ b/certs/openssl.server.conf @@ -1,4 +1,4 @@ extendedKeyUsage = serverAuth -subjectAltName = DNS:*.rpcpool.wg,DNS:localhost,IP:0.0.0.0,IP:127.0.0.1 +subjectAltName = DNS:*.marinade.finance,DNS:localhost,IP:0.0.0.0,IP:127.0.0.1 authorityKeyIdentifier = keyid,issuer basicConstraints = CA:FALSE diff --git a/scripts/cert-client.bash b/scripts/cert-client.bash index 162a134..b8dc5a5 100755 --- a/scripts/cert-client.bash +++ b/scripts/cert-client.bash @@ -44,7 +44,7 @@ then exit 1 fi - openssl x509 -req -in "$CERTS/client.req" -days 60 -CA "$CERTS/ca.cert" -CAkey "$CERTS/ca.key" -CAcreateserial -out "$CERTS/client.$VALIDATOR.cert" -extfile "$CERTS/openssl.client.conf" + openssl x509 -req -in "$CERTS/client.req" -days 3650 -CA "$CERTS/ca.cert" -CAkey "$CERTS/ca.key" -CAcreateserial -out "$CERTS/client.$VALIDATOR.cert" -extfile "$CERTS/openssl.client.conf" cat "$CERTS/client.$VALIDATOR.cert" else echo "Usage: $0 ..." diff --git a/scripts/cert-server.bash b/scripts/cert-server.bash index 27b72a9..cbdb4f9 100755 --- a/scripts/cert-server.bash +++ b/scripts/cert-server.bash @@ -10,7 +10,7 @@ CMD="$1" if [[ $CMD == "ca" ]] then - openssl req -x509 -newkey rsa:4096 -days 3650 -nodes -keyout "$CERTS/ca.key" -out "$CERTS/ca.cert" -subj "/CN=Triton One" + openssl req -x509 -newkey rsa:4096 -days 3650 -nodes -keyout "$CERTS/ca.key" -out "$CERTS/ca.cert" -subj "/CN=Marinade" elif [[ $CMD == "sign" ]] then HOST="$2"