Added targets to verify the certificates
authoraland <aland>
Sun, 12 Aug 2007 14:15:18 +0000 (14:15 +0000)
committeraland <aland>
Sun, 12 Aug 2007 14:15:18 +0000 (14:15 +0000)
raddb/certs/Makefile

index a9fa070..5f512c0 100644 (file)
@@ -70,6 +70,10 @@ server.p12: server.crt
 server.pem: server.p12
        openssl pkcs12 -in server.p12 -out server.pem -passin pass:$(PASSWORD_SERVER) -passout pass:$(PASSWORD_SERVER)
 
+.PHONY: server.vrfy
+server.vrfy: ca.pem
+       openssl verify -CAfile ca.pem server.pem
+
 ######################################################################
 #
 #  Create a new client certificate, signed by the the above server
@@ -89,6 +93,11 @@ client.pem: client.p12
        openssl pkcs12 -in client.p12 -out client.pem -passin pass:$(PASSWORD_SERVER) -passout pass:$(PASSWORD_CLIENT)
        cp client.pem $(USER_NAME).pem
 
+.PHONY: server.vrfy
+client.vrfy: server.pem client.pem 
+       c_rehash .
+       openssl verify -CApath . client.pem
+
 ######################################################################
 #
 #  Miscellaneous rules.
@@ -121,5 +130,5 @@ clean:
 distclean:
        @if [ -d CVS -a `grep -i 'cvs\.freeradius\.org' CVS/Root` ] ; then \
                rm -f *~ dh *.csr *.crt *.p12 *.der *.pem *.key index.txt* \
-                       serial* random; \
+                       serial* random *\.0 *\.1; \
        fi