From 9c15a6ae11de3ebeab1acb797e715c98167f9a17 Mon Sep 17 00:00:00 2001 From: itiligent Date: Wed, 6 Sep 2023 19:59:44 +1000 Subject: [PATCH] Improve tls hardening flow & options --- 1-setup.sh | 1 + 4a-install-tls-self-signed-nginx.sh | 2 +- add-tls-guac-daemon.sh | 53 +++++++++++++++++------------ 3 files changed, 34 insertions(+), 22 deletions(-) diff --git a/1-setup.sh b/1-setup.sh index ecdd66d..9a76a03 100644 --- a/1-setup.sh +++ b/1-setup.sh @@ -665,6 +665,7 @@ sed -i "s|CERT_STATE=|CERT_STATE='${CERT_STATE}'|g" $DOWNLOAD_DIR/add-tls-guac-d sed -i "s|CERT_LOCATION=|CERT_LOCATION='${CERT_LOCATION=}'|g" $DOWNLOAD_DIR/add-tls-guac-daemon.sh sed -i "s|CERT_ORG=|CERT_ORG='${CERT_ORG}'|g" $DOWNLOAD_DIR/add-tls-guac-daemon.sh sed -i "s|CERT_OU=|CERT_OU='${CERT_OU}'|g" $DOWNLOAD_DIR/add-tls-guac-daemon.sh +sed -i "s|CERT_DAYS=|CERT_DAYS='${CERT_DAYS}'|g" $DOWNLOAD_DIR/add-tls-guac-daemon.sh sed -i "s|MYSQL_HOST=|MYSQL_HOST='${MYSQL_HOST}'|g" $DOWNLOAD_DIR/upgrade-guac.sh sed -i "s|MYSQL_PORT=|MYSQL_PORT='${MYSQL_PORT}'|g" $DOWNLOAD_DIR/upgrade-guac.sh sed -i "s|GUAC_USER=|GUAC_USER='${GUAC_USER}'|g" $DOWNLOAD_DIR/upgrade-guac.sh diff --git a/4a-install-tls-self-signed-nginx.sh b/4a-install-tls-self-signed-nginx.sh index 734fa81..9ed6c0a 100644 --- a/4a-install-tls-self-signed-nginx.sh +++ b/4a-install-tls-self-signed-nginx.sh @@ -38,7 +38,7 @@ fi echo -e "${GREY}New self signed TLS certificate attributes are shown below...${DGREY}" # Display the new TLS cert parameters. -cat <