[Freeswitch-users] Help!! FS -TLS interworking issue, How to config to allow "gentls_cert" to generate a root certificate with more longer valid-period ?

Patrick Lists freeswitch-list at puzzled.xs4all.nl
Wed Aug 1 20:56:28 MSD 2012


On 01-08-12 18:00, Mitch Capper wrote:
> To make it easier I put up a version anyone can grab and it won't
> trample your existing FS data (installs certs to /tmp/fs_test):
> wget http://mitchcapper.com/gentls_cert && chmod +x gentls_cert
> ./gentls_cert setup && ./gentls_cert create_server
> openssl x509 -noout -in /tmp/fs_test/agent.pem  -enddate
> openssl x509 -noout -in /tmp/fs_test/cafile.pem  -enddate
>
>
> Once done just rm /tmp/fs_test  and genttls_cert and there will be
> nothing remaining from the test.
> ~Mitch

I don't have 5.7 (why would one not update to 5.8?!) but on an 
up-to-date CentOS 5.8 x86 box I see the following from your script:

[patrick at svr2 fs_test]$ openssl x509 -noout -in agent.pem -enddate
notAfter=Jul 31 16:48:58 2018 GMT
[patrick at svr2 fs_test]$ openssl x509 -noout -in cafile.pem -enddate
notAfter=Jul 31 16:48:57 2018 GMT

Regards,
Patrick



Join us at ClueCon 2011 Aug 9-11, 2011
More information about the FreeSWITCH-users mailing list