fix for revoke client

This commit is contained in:
EugeneBogush 2024-11-28 17:01:07 +02:00 committed by GitHub
parent c15f4dd357
commit 73b91444cc
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -490,6 +490,9 @@ else
./easyrsa --batch revoke "$client" ./easyrsa --batch revoke "$client"
./easyrsa --batch --days=3650 gen-crl ./easyrsa --batch --days=3650 gen-crl
rm -f /etc/openvpn/server/crl.pem rm -f /etc/openvpn/server/crl.pem
rm -f /etc/openvpn/server/easy-rsa/pki/reqs/"$client".req
rm -f /etc/openvpn/server/easy-rsa/pki/private/"$client".key
rm -f /etc/openvpn/server/easy-rsa/pki/issued/"$client".crt
cp /etc/openvpn/server/easy-rsa/pki/crl.pem /etc/openvpn/server/crl.pem cp /etc/openvpn/server/easy-rsa/pki/crl.pem /etc/openvpn/server/crl.pem
# CRL is read with each client connection, when OpenVPN is dropped to nobody # CRL is read with each client connection, when OpenVPN is dropped to nobody
chown nobody:"$group_name" /etc/openvpn/server/crl.pem chown nobody:"$group_name" /etc/openvpn/server/crl.pem