[Swan-dev] time to delete old dist_certs shell script (attempt #2)?

Andrew Cagney andrew.cagney at gmail.com
Tue Jun 23 20:42:31 EEST 2015


I'm not sure I'm following

On 23 June 2015 at 12:54, Antony Antony <antony at phenome.org> wrote:
> I still have issues to install the patched pyOpenssl RPM on FC20. The patched package is a barrier for me.
> Of the 3 servers I run, so far I only manged to run distcert.py on one and I copied the generated files to the other tow.
> -antony

This doesn't seem like a reason for retaining the old shell scripts -
they are so far behind that they don't even generate all the required
keys.  BTW, best place to run dist_certs.py is on one of the test VMs
(see "make kvm-keys"), and not on a host.  Provided the VM is
relatively recent all the necessary dependencies will have been
installed for you.

Andrew

PS: Just beware of this weird problem:

# Strangely, dist_certs.py can't create a directory called "certs/" on
# a 9p mounted file system (OSError: [Errno 13] Permission denied:
# 'certs/').  Get around it by first creating the certs in /tmp and
# then copying them over.

> On Tue, Jun 23, 2015 at 12:25:48PM -0300, Paul Wouters wrote:
>> Fine with me
>>
>> Sent from my iPhone
>>
>> > On Jun 23, 2015, at 10:54, Andrew Cagney <andrew.cagney at gmail.com> wrote:
>> >
>> > I'd like to delete the old dist_certs shell script:
>> >
>> > - dist_certs.py seems to be working
>> >
>> > - "make kvm-keys" (assuming your VM is up-to-date) even lets you
>> > generate keys when the host isn't Fedora 21.
>> >
>> > little point in keeping old code around.
>> >
>> > Andrew
>> > _______________________________________________
>> > Swan-dev mailing list
>> > Swan-dev at lists.libreswan.org
>> > https://lists.libreswan.org/mailman/listinfo/swan-dev
>> _______________________________________________
>> Swan-dev mailing list
>> Swan-dev at lists.libreswan.org
>> https://lists.libreswan.org/mailman/listinfo/swan-dev
>>


More information about the Swan-dev mailing list