浏览代码

Restrict access permissions of the private key

merge-requests/1/merge
Christoph Haas 10 年前
父节点
当前提交
4cc8fe0a22
共有 1 个文件被更改,包括 2 次插入0 次删除
  1. +2
    -0
      roles/ispmail-certificate/tasks/main.yml

+ 2
- 0
roles/ispmail-certificate/tasks/main.yml 查看文件

@@ -1,4 +1,6 @@
--- ---
- name: Create a self-signed certificate - name: Create a self-signed certificate
shell: openssl req -new -x509 -days 3650 -subj "/C=DE/ST=Hamburg/L=Hamburg/O=IT/CN={{ansible_fqdn}}" -nodes -sha256 -newkey rsa:4096 -out /etc/ssl/certs/mailserver.pem -keyout /etc/ssl/private/mailserver.pem -extensions v3_ca creates=/etc/ssl/certs/mailserver.pem shell: openssl req -new -x509 -days 3650 -subj "/C=DE/ST=Hamburg/L=Hamburg/O=IT/CN={{ansible_fqdn}}" -nodes -sha256 -newkey rsa:4096 -out /etc/ssl/certs/mailserver.pem -keyout /etc/ssl/private/mailserver.pem -extensions v3_ca creates=/etc/ssl/certs/mailserver.pem
- name: Restrict access permissions of the private key
file: path=/etc/ssl/private/mailserver.pem mode=0640



正在加载...
取消
保存