Include the hostname in the generated SSL certs so that the Java 0.0.4
authorEvan Broder <broder@mit.edu>
Wed, 29 Oct 2008 04:00:17 +0000 (00:00 -0400)
committerEvan Broder <broder@mit.edu>
Wed, 29 Oct 2008 04:00:17 +0000 (00:00 -0400)
keytool will accept them

svn path=/trunk/packages/invirt-vnc-server/; revision=1415

debian/changelog
debian/invirt-vnc-server.postinst

index 2a4ca80..a06fad5 100644 (file)
@@ -1,8 +1,10 @@
 invirt-vnc-server (0.0.4) unstable; urgency=low
 
   * Deprecate /etc/invirt/secrets in favor of /etc/invirt/vnc
 invirt-vnc-server (0.0.4) unstable; urgency=low
 
   * Deprecate /etc/invirt/secrets in favor of /etc/invirt/vnc
+  * Include the hostname in the generated SSL certs so that the Java
+    keytool will accept them
 
 
- -- Evan Broder <broder@mit.edu>  Tue, 28 Oct 2008 23:58:37 -0400
+ -- Evan Broder <broder@mit.edu>  Tue, 28 Oct 2008 23:59:57 -0400
 
 invirt-vnc-server (0.0.3) unstable; urgency=low
 
 
 invirt-vnc-server (0.0.3) unstable; urgency=low
 
index f30b573..48e8245 100755 (executable)
@@ -26,7 +26,7 @@ case "$1" in
         fi
         
         if ! [ -e /etc/invirt/vnc/server.crt ]; then
         fi
         
         if ! [ -e /etc/invirt/vnc/server.crt ]; then
-            openssl req -new -x509 -nodes -sha1 -subj '/' -key /etc/invirt/vnc/server.pem \
+            openssl req -new -x509 -nodes -sha1 -subj "/CN=$(hostname -f)" -key /etc/invirt/vnc/server.pem \
                 > /etc/invirt/vnc/server.crt
         fi
         
                 > /etc/invirt/vnc/server.crt
         fi