v-change-web-domain-sslcert 2.8 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788
  1. #!/bin/bash
  2. # info: change domain ssl certificate
  3. # options: USER DOMAIN SSL_DIR [RESTART]
  4. #
  5. # The function changes SSL domain certificate and the key. If ca file present
  6. # it will be replaced as well.
  7. #----------------------------------------------------------#
  8. # Variable&Function #
  9. #----------------------------------------------------------#
  10. # Argument definition
  11. user=$1
  12. domain=$(idn -t --quiet -u "$2" )
  13. domain_idn=$(idn -t --quiet -a "$domain")
  14. ssl_dir=$3
  15. restart=$4
  16. # Includes
  17. source $VESTA/func/main.sh
  18. source $VESTA/func/domain.sh
  19. source $VESTA/conf/vesta.conf
  20. #----------------------------------------------------------#
  21. # Verifications #
  22. #----------------------------------------------------------#
  23. check_args '3' "$#" 'USER DOMAIN SSL_DIR [RESTART]'
  24. is_format_valid 'user' 'domain' 'ssl_dir'
  25. is_system_enabled "$WEB_SYSTEM" 'WEB_SYSTEM'
  26. is_object_valid 'user' 'USER' "$user"
  27. is_object_unsuspended 'user' 'USER' "$user"
  28. is_object_valid 'web' 'DOMAIN' "$domain"
  29. is_object_unsuspended 'web' 'DOMAIN' "$domain"
  30. is_object_value_exist 'web' 'DOMAIN' "$domain" '$SSL'
  31. is_web_domain_cert_valid
  32. #----------------------------------------------------------#
  33. # Action #
  34. #----------------------------------------------------------#
  35. # Deleting old certificate
  36. tmpdir=$(mktemp -p $HOMEDIR/$user/web/$domain/private -d)
  37. rm -f $HOMEDIR/$user/conf/web/ssl.$domain.*
  38. mv $USER_DATA/ssl/$domain.* $tmpdir
  39. chown -R $user:$user $tmpdir
  40. # Adding new certificate to user data directory
  41. cp -f $ssl_dir/$domain.crt $USER_DATA/ssl/$domain.crt
  42. cp -f $ssl_dir/$domain.key $USER_DATA/ssl/$domain.key
  43. cp -f $ssl_dir/$domain.crt $USER_DATA/ssl/$domain.pem
  44. if [ -e "$ssl_dir/$domain.ca" ]; then
  45. cp -f $ssl_dir/$domain.ca $USER_DATA/ssl/$domain.ca
  46. cat $USER_DATA/ssl/$domain.ca >> $USER_DATA/ssl/$domain.pem
  47. fi
  48. # Adding new certificate to user dir
  49. cp -f $USER_DATA/ssl/$domain.crt $HOMEDIR/$user/conf/web/ssl.$domain.crt
  50. cp -f $USER_DATA/ssl/$domain.key $HOMEDIR/$user/conf/web/ssl.$domain.key
  51. cp -f $USER_DATA/ssl/$domain.pem $HOMEDIR/$user/conf/web/ssl.$domain.pem
  52. if [ -e "$USER_DATA/ssl/$domain.ca" ]; then
  53. cp -f $USER_DATA/ssl/$domain.ca $HOMEDIR/$user/conf/web/ssl.$domain.ca
  54. fi
  55. #----------------------------------------------------------#
  56. # Vesta #
  57. #----------------------------------------------------------#
  58. # Restarting web server
  59. if [ "$restart" != 'no' ]; then
  60. $BIN/v-restart-web
  61. check_result $? "Web restart failed" >/dev/null
  62. if [ ! -z "$PROXY_SYSTEM" ]; then
  63. $BIN/v-restart-proxy
  64. check_result $? "Proxy restart failed" >/dev/null
  65. fi
  66. fi
  67. # Logging
  68. log_history "changed ssl certificate for $domain"
  69. log_event "$OK" "$ARGUMENTS"
  70. exit