Skip to content

Commit

Permalink
Add ssl key with postres as CN
Browse files Browse the repository at this point in the history
  • Loading branch information
m-kuhn committed Jun 5, 2019
1 parent d34c739 commit dc36d4a
Show file tree
Hide file tree
Showing 4 changed files with 85 additions and 5 deletions.
4 changes: 2 additions & 2 deletions .ci/travis/linux/docker-compose.travis.yml
Expand Up @@ -7,8 +7,8 @@ services:
environment:
- ALLOW_IP_RANGE="172.18.0.0/16"
# The following files are added in Dockerfile-postgis
- SSL_CERT_FILE=/etc/ssl/certs/localhost_ssl_cert.pem
- SSL_KEY_FILE=/etc/ssl/private/localhost_ssl_key.pem
- SSL_CERT_FILE=/etc/ssl/certs/postgres_cert.crt
- SSL_KEY_FILE=/etc/ssl/private/postgres_key.key
- SSL_CA_FILE=/etc/ssl/certs/chains_subissuer-issuer-root_issuer2-root2.pem

mssql:
Expand Down
6 changes: 3 additions & 3 deletions tests/testdata/Dockerfile-postgis
@@ -1,9 +1,9 @@
FROM kartoza/postgis:11.0-2.5

ADD auth_system/certs_keys/localhost_ssl_cert.pem /etc/ssl/certs/localhost_ssl_cert.pem
ADD auth_system/certs_keys/localhost_ssl_key.pem /etc/ssl/private/localhost_ssl_key.pem
ADD auth_system/certs_keys/postgres.crt /etc/ssl/certs/postgres_cert.crt
ADD auth_system/certs_keys/postgres.key /etc/ssl/private/postgres_key.key
ADD auth_system/certs_keys/chains_subissuer-issuer-root_issuer2-root2.pem /etc/ssl/certs/chains_subissuer-issuer-root_issuer2-root2.pem

RUN chmod 400 /etc/ssl/private/localhost_ssl_key.pem
RUN chmod 400 /etc/ssl/private/postgres_key.key

ADD temp/setup-ssl.sh /
52 changes: 52 additions & 0 deletions tests/testdata/auth_system/certs_keys/postgres.crt
@@ -0,0 +1,52 @@
Certificate:
Data:
Version: 1 (0x0)
Serial Number:
70:be:4c:ba:d0:1b:59:24:b3:b1:77:c8:9d:39:66:f3:df:5f:d9:5b
Signature Algorithm: NULL
Issuer: CN = postgres
Validity
Not Before: Jun 5 12:57:48 2019 GMT
Not After : Oct 6 12:57:48 3018 GMT
Subject: CN = postgres
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public-Key: (2048 bit)
Modulus:
00:9c:1b:1c:11:26:fe:5e:be:73:56:70:be:96:14:
01:4c:df:be:2e:45:85:1d:13:6a:a8:9d:a3:93:d2:
bb:5d:ab:e8:3a:12:8b:13:dd:b9:5e:f4:06:c4:82:
44:3e:06:18:96:9d:2c:c4:3b:e6:7d:e1:ea:b0:7f:
3a:12:92:f2:be:1b:06:09:86:77:fd:4a:05:29:e4:
47:a2:db:d6:7b:8b:07:40:3c:99:4a:de:8f:fc:ec:
15:80:69:7f:7f:2d:b8:7d:6a:0a:b4:bf:79:32:c0:
cc:50:6c:0e:e9:77:ed:5d:37:0d:60:ef:5f:4a:52:
cb:50:e6:b4:8a:8b:ee:6e:33:c9:26:ea:51:1e:30:
63:a2:e7:a5:44:53:86:01:3f:94:91:c3:75:8f:c5:
4b:c5:55:59:52:5a:e7:c1:38:71:b4:87:2a:9c:c8:
86:1d:36:c6:5e:af:ff:4d:b8:dc:6a:6a:e7:52:12:
d3:3b:7d:e3:27:75:0a:94:cc:46:db:d7:98:a6:a2:
af:f6:9d:27:bf:fc:49:1d:7a:4e:a4:75:be:38:4a:
d8:90:8d:d3:98:02:f0:bb:42:44:9c:4c:0f:fb:48:
e4:10:ff:87:d7:df:f5:38:fa:8c:cc:09:0e:d4:9e:
bc:e1:6f:f0:4f:37:d5:76:42:28:90:cd:e8:46:a7:
64:a3
Exponent: 65537 (0x10001)
Signature Algorithm: NULL
-----BEGIN CERTIFICATE-----
MIICrzCCAZcCFHC+TLrQG1kks7F3yJ05ZvPfX9lbMA0GCSqGSIb3DQEBCwUAMBMx
ETAPBgNVBAMMCHBvc3RncmVzMCAXDTE5MDYwNTEyNTc0OFoYDzMwMTgxMDA2MTI1
NzQ4WjATMREwDwYDVQQDDAhwb3N0Z3JlczCCASIwDQYJKoZIhvcNAQEBBQADggEP
ADCCAQoCggEBAJwbHBEm/l6+c1ZwvpYUAUzfvi5FhR0Taqido5PSu12r6DoSixPd
uV70BsSCRD4GGJadLMQ75n3h6rB/OhKS8r4bBgmGd/1KBSnkR6Lb1nuLB0A8mUre
j/zsFYBpf38tuH1qCrS/eTLAzFBsDul37V03DWDvX0pSy1DmtIqL7m4zySbqUR4w
Y6LnpURThgE/lJHDdY/FS8VVWVJa58E4cbSHKpzIhh02xl6v/0243Gpq51IS0zt9
4yd1CpTMRtvXmKair/adJ7/8SR16TqR1vjhK2JCN05gC8LtCRJxMD/tI5BD/h9ff
9Tj6jMwJDtSevOFv8E831XZCKJDN6EanZKMCAwEAATANBgkqhkiG9w0BAQsFAAOC
AQEAW0R6XQNnmO3e5zzaK5AML5DVqueOblGrZf8YqfYLcSUTrSIZWTPLKJUe4xO/
ZWcBFT7KblGHf1moe/Qm/7R9j4yWY6PwAlHY93D/lNGyE0FuF5rawjcWJjoJwPmO
biKogdWQlMdbd/20C7oMiBeJgvUGscyCNuwpEQfDgQWz4Dvy1PiEAF5qf6aY5X79
NK6JOY/1o2ukbC7uztDgUm3iaflXhKDUuiS1uDUQ5uOq9RnNBNa3oo424sWEgZWr
yKNWIGERyZ8awAjsVYuouifseVwWBF1Lkj4v9xpYMUa6ifO1yujtoeDMUn+P8nPH
mYiPdWv/5pqFsJwaKIHlXoqaIw==
-----END CERTIFICATE-----
28 changes: 28 additions & 0 deletions tests/testdata/auth_system/certs_keys/postgres.key
@@ -0,0 +1,28 @@
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----

0 comments on commit dc36d4a

Please sign in to comment.