...
| Command |
|---|
sudo ipsec pki --gen --size 4096 --type rsa --outform pem > \ sudo ipsec pki --self --in /etc/ipsec.d/private/ca.key.pem \ |
...
| Command |
|---|
sudo ipsec pki --gen --size 4096 --type rsa --outform pem > | sudo tee /etc/ipsec.d/private/server.key.pem sudo ipsec pki --pub --in /etc/ipsec.d/private/server.key.pem --type rsa | ipsec pki --issue --lifetime 3650 --cacert /etc/ipsec.d/cacerts/ca.cert.pem --cakey /etc/ipsec.d/private/ca.key.pem --dn "CN=<server static IP address>" --san=”<server static IP address>” --san="<server static IP address>" --flag serverAuth --flag ikeIntermediate --outform pem > | sudo tee /etc/ipsec.d/certs/server.cert.pem |
...