mirror of
https://github.com/Nyr/openvpn-install.git
synced 2024-11-27 15:36:07 +03:00
Revoking doesn't need a restart
The CRL is checked with every new connection and channel renegotiation, no need to restart the server.
This commit is contained in:
parent
96108e6b2e
commit
3a96224d1f
@ -114,16 +114,6 @@ if [[ -e /etc/openvpn/server.conf ]]; then
|
||||
rm -rf pki/issued/$CLIENT.crt
|
||||
rm -rf /etc/openvpn/crl.pem
|
||||
cp /etc/openvpn/easy-rsa/pki/crl.pem /etc/openvpn/crl.pem
|
||||
# And restart
|
||||
if pgrep systemd-journal; then
|
||||
systemctl restart openvpn@server.service
|
||||
else
|
||||
if [[ "$OS" = 'debian' ]]; then
|
||||
/etc/init.d/openvpn restart
|
||||
else
|
||||
service openvpn restart
|
||||
fi
|
||||
fi
|
||||
echo ""
|
||||
echo "Certificate for client $CLIENT revoked"
|
||||
exit
|
||||
|
Loading…
Reference in New Issue
Block a user