refactor(entrypoint): mod permissions on fullchain

This commit is contained in:
Asif Bacchus 2021-07-24 02:12:44 -06:00
parent 2dbcd4a845
commit 41dcd6a5bb

View File

@ -23,7 +23,7 @@ certificateGenerateNew() {
# shellcheck disable=SC3028 # shellcheck disable=SC3028
if [ -z "$CERT_HOSTNAME" ]; then export CERT_HOSTNAME="$HOSTNAME"; fi if [ -z "$CERT_HOSTNAME" ]; then export CERT_HOSTNAME="$HOSTNAME"; fi
# create placeholder files to set permissions # create placeholder files to set permissions
touch /certs/fullchain.pem && chmod 664 /certs/fullchain.pem touch /certs/fullchain.pem && chmod 644 /certs/fullchain.pem
touch /certs/privkey.pem && chmod 640 /certs/privkey.pem touch /certs/privkey.pem && chmod 640 /certs/privkey.pem
# generate certificate # generate certificate
if ! openssl req -new -x509 -days 365 -nodes -out /certs/fullchain.pem -keyout /certs/privkey.pem -config /etc/selfsigned.cnf; then if ! openssl req -new -x509 -days 365 -nodes -out /certs/fullchain.pem -keyout /certs/privkey.pem -config /etc/selfsigned.cnf; then