Skip to content

Commit 037c951

Browse files
leogrpoiana
authored andcommitted
fix(pkg/tls): correct server cert signing
Signed-off-by: Leonardo Grasso <[email protected]>
1 parent a45142d commit 037c951

File tree

1 file changed

+4
-3
lines changed

1 file changed

+4
-3
lines changed

pkg/tls/generator.go

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -137,14 +137,15 @@ func (g *GRPCTLSGenerator) Generate() error {
137137
Organization: g.Organization,
138138
CommonName: g.CommonName,
139139
}
140-
serverCert, err := openssl.NewCertificate(serverCASigningInfo, caKey)
140+
serverCert, err := openssl.NewCertificate(serverCASigningInfo, serverKey)
141141
if err != nil {
142142
return fmt.Errorf("unable to create new server cert: %v", err)
143143
}
144144
serverCert.SetIssuer(caCert)
145-
err = caCert.Sign(caKey, openssl.EVP_SHA256)
145+
146+
err = serverCert.Sign(serverKey, openssl.EVP_SHA256)
146147
if err != nil {
147-
return fmt.Errorf("unable to sign caCert: %v", err)
148+
return fmt.Errorf("unable to sign serverCert: %v", err)
148149
}
149150
err = serverCert.Sign(caKey, openssl.EVP_SHA256)
150151
if err != nil {

0 commit comments

Comments
 (0)