Tweak the ssl.conf generated by cert-gen.sh, so that pycurl doesn't trip itself
authorWard Vandewege <wvandewege@veritasgenetics.com>
Wed, 30 May 2018 20:37:23 +0000 (16:37 -0400)
committerWard Vandewege <wvandewege@veritasgenetics.com>
Wed, 30 May 2018 20:37:23 +0000 (16:37 -0400)
up with the error message

  gnutls_handshake() failed: Key usage violation in certificate has been detected.

No issue #

Arvados-DCO-1.1-Signed-off-by: Ward Vandewege <wvandewege@veritasgenetics.com>

charts/arvados/cert-gen.sh

index 8558cb31597a1c65aff125547304313343fda755..bdcf80990af05163b23ed885b417d2e0b6c6704d 100755 (executable)
@@ -20,7 +20,7 @@ prompt = no
 CN = arvados-test-cert
 
 [v3_req]
-keyUsage = keyEncipherment, dataEncipherment
+keyUsage = keyEncipherment, dataEncipherment, digitalSignature
 extendedKeyUsage = serverAuth
 subjectAltName = @alt_names