Browse Source

Update readme

master
Brielle Bruns 4 years ago
parent
commit
d505039a09
2 changed files with 18 additions and 3 deletions
  1. +16
    -1
      README.md
  2. +2
    -2
      gen-unifi-cert.sh

+ 16
- 1
README.md View File

@@ -18,4 +18,19 @@ DSTROOTCAX3.txt - Root CA cert needed for use with the gen-unifi-cert.sh script

apache-le-alias.conf - Use with apache for LE well-known alias config

apache-le-proxy.conf - Use with apache for LE well-known proxy config
apache-le-proxy.conf - Use with apache for LE well-known proxy config

How To Use
=============================================================

gen-unifi-cert.sh
1) Do initial cert generation:
gen-unifi-cert.sh -e email@address.com -d unifi.somedomain.com -d unifi.someotherdomain.com
2) Put in /etc/cron.weekly/renew-unifi-ssl if everything works okay:
/path/to/script/gen-unifi-cert.sh -r -d unifi.somedomain.com -d unifi.someotherdomain.com
3) Script will now run weekly and renew the certificate if necessary ( <30 days remain)
and restart unifi only if cert has been renewed.

+ 2
- 2
gen-unifi-cert.sh View File

@@ -71,8 +71,8 @@ else
-deststorepass aircontrolenterprise
echo "Inserting certificate into Unifi keystore..."
keytool -trustcacerts -importkeystore \
-deststorepass aircontrolenterprise \
-destkeypass aircontrolenterprise \
-deststorepass aircontrolenterprise \
-destkeypass aircontrolenterprise \
-destkeystore /usr/lib/unifi/data/keystore \
-srckeystore ${TEMPFILE} -srcstoretype PKCS12 \
-srcstorepass aircontrolenterprise \


Loading…
Cancel
Save