mirror of https://github.com/hashicorp/consul
41 lines
944 B
Bash
41 lines
944 B
Bash
|
#!/bin/bash
|
||
|
|
||
|
# initialize the outputs for each dc
|
||
|
for dc in primary secondary; do
|
||
|
rm -rf "workdir/${dc}/tls"
|
||
|
mkdir -p "workdir/${dc}/tls"
|
||
|
done
|
||
|
|
||
|
container="consul-envoy-integ-tls-init--${CASE_NAME}"
|
||
|
|
||
|
scriptlet="
|
||
|
mkdir /out ;
|
||
|
cd /out ;
|
||
|
consul tls ca create ;
|
||
|
consul tls cert create -dc=primary -server -node=pri ;
|
||
|
consul tls cert create -dc=secondary -server -node=sec
|
||
|
"
|
||
|
|
||
|
docker rm -f "$container" &>/dev/null || true
|
||
|
docker run -i --net=none --name="$container" consul-dev:latest sh -c "${scriptlet}"
|
||
|
|
||
|
# primary
|
||
|
for f in \
|
||
|
consul-agent-ca.pem \
|
||
|
primary-server-consul-0-key.pem \
|
||
|
primary-server-consul-0.pem \
|
||
|
; do
|
||
|
docker cp "${container}:/out/$f" workdir/primary/tls
|
||
|
done
|
||
|
|
||
|
# secondary
|
||
|
for f in \
|
||
|
consul-agent-ca.pem \
|
||
|
secondary-server-consul-0-key.pem \
|
||
|
secondary-server-consul-0.pem \
|
||
|
; do
|
||
|
docker cp "${container}:/out/$f" workdir/secondary/tls
|
||
|
done
|
||
|
|
||
|
docker rm -f "$container" >/dev/null || true
|