#!/usr/bin/bash set -e FQDN=`hostname` if test -f /etc/pki/tls/certs/localhost.crt -a \ -f /etc/pki/tls/private/localhost.key; then exit 0 fi if test -f /etc/pki/tls/certs/localhost.crt -a \ ! -f /etc/pki/tls/private/localhost.key; then echo "Missing certificate key!" exit 1 fi if test !-f /etc/pki/tls/certs/localhost.crt -a \ -f /etc/pki/tls/private/localhost.key; then echo "Missing certificate, but key is present!" exit 1 fi sscg -q \ --cert-file /etc/pki/tls/certs/localhost.crt \ --cert-key-file /etc/pki/tls/private/localhost.key \ --ca-file /etc/pki/tls/certs/localhost.crt \ --lifetime 365 \ --hostname $FQDN \ --email root@$FQDN