From mboxrd@z Thu Jan 1 00:00:00 1970 From: Erik Kapfer To: development@lists.ipfire.org Subject: [PATCH] OpenVPN: Set default of 730 days for client certificate validity Date: Mon, 18 Jun 2018 16:41:27 +0200 Message-ID: <1529332887-30374-1-git-send-email-erik.kapfer@ipfire.org> MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="===============4085562703911760516==" List-Id: --===============4085562703911760516== Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Since OpenSSL 1.1.0x it is required to set a value for the 'valid til (days)'= field. The WUI delivers now a guide value of two years. Signed-off-by: Erik Kapfer --- html/cgi-bin/ovpnmain.cgi | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/html/cgi-bin/ovpnmain.cgi b/html/cgi-bin/ovpnmain.cgi index 1c2a810..b3122a4 100644 --- a/html/cgi-bin/ovpnmain.cgi +++ b/html/cgi-bin/ovpnmain.cgi @@ -4451,7 +4451,7 @@ if ($cgiparams{'TYPE'} eq 'net') { $cgiparams{'CERT_CITY'} =3D $vpnsettings{'ROOTCERT_CITY'}; $cgiparams{'CERT_STATE'} =3D $vpnsettings{'ROOTCERT_STATE'}; $cgiparams{'CERT_COUNTRY'} =3D $vpnsettings{'ROOTCERT_COUNTRY'}; - $cgiparams{'DAYS_VALID'} =3D $vpnsettings{'DAYS_VALID'}; + $cgiparams{'DAYS_VALID'} =3D $vpnsettings{'DAYS_VALID'} =3D '730'; } =20 VPNCONF_ERROR: --=20 2.7.4 --===============4085562703911760516==--