pict-rs/docker/object-storage/setup-tls.sh
2024-01-15 18:15:36 -05:00

16 lines
348 B
Bash
Executable file

#!/usr/bin/env bash
set -xe
certstrap init --common-name pictrsCA
certstrap request-cert --common-name postgres --domain localhost
certstrap sign postgres --CA pictrsCA
mkdir -p ./storage/
sudo mkdir -p ./storage/postgres
sudo tee ./storage/postgres/pg_hba.conf << EOF
host all all all trust
hostssl all all all cert clientcert=verify-full
EOF