From 2f3b13fb8881bcd79d36ba3ebc8a762ed0e4be9b Mon Sep 17 00:00:00 2001 From: Lukas Schauer Date: Mon, 14 Dec 2015 14:37:28 +0100 Subject: [PATCH] travis: use fullchain to verify ssl certificate --- .travis.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.travis.yml b/.travis.yml index fa842be..7d5fe0e 100644 --- a/.travis.yml +++ b/.travis.yml @@ -26,6 +26,7 @@ script: - ./letsencrypt.sh --cron - ./letsencrypt.sh - openssl x509 -in "certs/${TMP_URL}/cert.pem" -noout -text - - openssl verify -verbose -CAfile "certs/lets-encrypt-staging.pem" -purpose sslserver "certs/${TMP_URL}/cert.pem" + - errout="$(openssl verify -verbose -CAfile "certs/${TMP_URL}/fullchain.pem" -purpose sslserver "certs/${TMP_URL}/fullchain.pem" | grep -v ': OK$')" + - if [[ ! -z "${errout}" ]]; then printf -- "${errout}"; exit 1; fi - rm private_key.pem - ./letsencrypt.sh --revoke "certs/${TMP_URL}/cert.pem" --privkey "certs/${TMP_URL}/privkey.pem" -- 2.47.3