blob: 536e6263c20cda7418565f38cf862d924dfa4381 (
plain)
ofs | hex dump | ascii |
---|
0000 | 50 4b 03 04 0a 00 00 00 00 00 63 7d 98 4a 3a 75 8b 5c 44 00 00 00 44 00 00 00 0c 00 00 00 63 68 | PK........c}.J:u.\D...D.......ch |
0020 | 65 63 6b 73 75 6d 2e 6c 73 74 44 65 66 69 6e 69 74 69 6f 6e 73 2f 6f 70 65 6e 6f 6e 73 5f 5f 76 | ecksum.lstDefinitions/openons__v |
0040 | 49 4d 53 5f 4e 53 2e 79 61 6d 6c 3a 31 33 33 61 66 63 66 37 38 62 39 65 66 31 38 35 36 37 39 32 | IMS_NS.yaml:133afcf78b9ef1856792 |
0060 | 33 36 65 31 33 33 38 64 38 36 61 36 0d 0a 50 4b 03 04 0a 00 00 00 00 00 63 7d 98 4a ae 6a df 7b | 36e1338d86a6..PK........c}.J.j.{ |
0080 | 2b 00 00 00 2b 00 00 00 09 00 00 00 63 73 61 72 2e 6d 65 74 61 54 79 70 65 3a 4e 53 41 52 0a 56 | +...+.......csar.metaType:NSAR.V |
00#!/bin/bash
#
# ===========LICENSE_START====================================================
# Copyright (C) 2021 AT&T Intellectual Property. All rights reserved.
# ============================================================================
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
# ============LICENSE_END=====================================================
#
#
# Generates a root certificate and truststore for use by the various policy
# docker images.
#
DIR="${0%/*}/config"
cd "${DIR}"
OUTFILE=policy-truststore
ALIAS=onap.policy.csit.root.ca
PASS=Pol1cy_0nap
keytool -list -alias ${ALIAS} -keystore ${OUTFILE} -storepass "${PASS}" \
>/dev/null 2>&1
if [ $? -eq 0 ]
then
echo "Truststore already contains a policy root CA - not re-generating"
exit 0
fi
openssl req -new -keyout cakey.pem -out careq.pem -passout "pass:${PASS}" \
-subj "/C=US/ST=New Jersey/OU=ONAP/CN=policy.onap"
openssl x509 -signkey cakey.pem -req -days 3650 -in careq.pem \
-out caroot.cer -extensions v3_ca -passin "pass:${PASS}"
keytool -import -noprompt -trustcacerts -alias ${ALIAS} \
-file caroot.cer -keystore "${OUTFILE}" -storepass "${PASS}"
chmod 644 "$OUTFILE"
|