slightly more automated
[x509-shell-scripts] / revoke-certificate.sh_
1 $ cd /etc/ipsec.d/
2 $ ipsec pki --signcrl --reason key-compromise \
3         --cacert cacerts/strongswanCert.pem \
4         --cakey private/strongswanKey.pem \
5         --cert certs/AlexanderCert.pem \
6         --outform pem > crls/crl.pem