From: Lukas Schauer Date: Mon, 14 Dec 2015 13:37:28 +0000 (+0100) Subject: travis: use fullchain to verify ssl certificate X-Git-Tag: v0.1.0~130 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=2f3b13fb8881bcd79d36ba3ebc8a762ed0e4be9b;p=thirdparty%2Fdehydrated.git travis: use fullchain to verify ssl certificate --- diff --git a/.travis.yml b/.travis.yml index fa842be..7d5fe0e 100644 --- a/.travis.yml +++ b/.travis.yml @@ -26,6 +26,7 @@ script: - ./letsencrypt.sh --cron - ./letsencrypt.sh - openssl x509 -in "certs/${TMP_URL}/cert.pem" -noout -text - - openssl verify -verbose -CAfile "certs/lets-encrypt-staging.pem" -purpose sslserver "certs/${TMP_URL}/cert.pem" + - errout="$(openssl verify -verbose -CAfile "certs/${TMP_URL}/fullchain.pem" -purpose sslserver "certs/${TMP_URL}/fullchain.pem" | grep -v ': OK$')" + - if [[ ! -z "${errout}" ]]; then printf -- "${errout}"; exit 1; fi - rm private_key.pem - ./letsencrypt.sh --revoke "certs/${TMP_URL}/cert.pem" --privkey "certs/${TMP_URL}/privkey.pem"