From da63d5b6ca409b46161ceecab1b3dd3f831491df Mon Sep 17 00:00:00 2001 From: Guilhem Moulin Date: Thu, 14 May 2026 13:19:00 +0200 Subject: Drop OCSP must-staple extension test which is no longer available. MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit “Error finalizing order :: OCSP must-staple extension is no longer available: see https://letsencrypt.org/2024/12/05/ending-ocsp” --- tests/cert-extensions | 27 --------------------------- 1 file changed, 27 deletions(-) (limited to 'tests') diff --git a/tests/cert-extensions b/tests/cert-extensions index 3cb0a43..9c5b977 100644 --- a/tests/cert-extensions +++ b/tests/cert-extensions @@ -61,31 +61,4 @@ x509_check /etc/lacme/test2.crt <<-EOF DNS:$(echo "$commonName" "$subjectAltName" | tr " " "\\n" | sort -u | paste -sd" " | sed -r "s/ /, DNS:/g") EOF -# tlsfeature -openssl genpkey -algorithm RSA -out /etc/lacme/test3.key -commonName="$(head -c10 /dev/urandom | base32 -w0 | tr "A-Z" "a-z").$DOMAINNAME" -cat >"/etc/lacme/lacme-certs.conf.d/test3.conf" <<- EOF - [test3] - certificate-key = /etc/lacme/test3.key - certificate-chain = /etc/lacme/test3.crt - subject = /CN=$commonName - tlsfeature = status_request -EOF - -lacme newOrder test3 -test /etc/lacme/test3.crt -nt /etc/lacme/test3.key -x509_check /etc/lacme/test3.crt <<-EOF - subject=/CN=$commonName - X509v3 Key Usage: critical - Digital Signature, Key Encipherment - X509v3 Extended Key Usage: - TLS Web Server Authentication - X509v3 Basic Constraints: critical - CA:FALSE - X509v3 Subject Alternative Name: - DNS:$commonName - TLS Feature: - status_request -EOF - # vim: set filetype=sh : -- cgit v1.2.3