| author | Tomas Zeman <tzeman@volny.cz> |
| Wed, 07 Nov 2018 08:41:06 +0100 | |
| changeset 37 | 968d93e43326 |
| parent 34 | b685225d4966 |
| permissions | -rw-r--r-- |
|
28
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
1 |
# Certificate monitoring |
|
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
2 |
|
|
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
3 |
# Number of seconds till certificate expires |
|
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
4 |
# Parameters: $1 - path to cert file |
|
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
5 |
UserParameter=cert.x509.expire[*],openssl x509 -in $1 -enddate|grep notAfter|awk -F= '{print $$2}'|while read l; do t=`date -d"$l" +%s`; n=`date +%s`; echo `expr $t - $n`; done
|
|
34
b685225d4966
conf/openssl.conf: Certificate expiration via network connect
Tomas Zeman <tzeman@volny.cz>
parents:
28
diff
changeset
|
6 |
# Parameters: $1 - host, $2 - port |
|
b685225d4966
conf/openssl.conf: Certificate expiration via network connect
Tomas Zeman <tzeman@volny.cz>
parents:
28
diff
changeset
|
7 |
UserParameter=cert.net.expire[*],echo | openssl s_client -connect $1:$2 2>/dev/null| openssl x509 -noout -enddate | grep notAfter|awk -F= '{print $$2}'|while read l; do t=`date -d"$l" +%s`; n=`date +%s`; echo `expr $t - $n`; done
|
|
b685225d4966
conf/openssl.conf: Certificate expiration via network connect
Tomas Zeman <tzeman@volny.cz>
parents:
28
diff
changeset
|
8 |
# Parameters: $1 - host, $2 - port, $3 - protocol |
|
b685225d4966
conf/openssl.conf: Certificate expiration via network connect
Tomas Zeman <tzeman@volny.cz>
parents:
28
diff
changeset
|
9 |
UserParameter=cert.starttls.expire[*],echo | openssl s_client -connect $1:$2 -starttls $3 2>/dev/null| openssl x509 -noout -enddate | grep notAfter|awk -F= '{print $$2}'|while read l; do t=`date -d"$l" +%s`; n=`date +%s`; echo `expr $t - $n`; done
|
|
28
7cccb5cf738b
conf/openssl.conf: certificate expiration checks
Tomas Zeman <tzeman@volny.cz>
parents:
diff
changeset
|
10 |