Merge pull request #1043 from dcooper16/expired_certs

Don't check expired certificates
This commit is contained in:
Dirk Wetter 2018-04-26 16:51:20 +02:00 committed by GitHub
commit 6d919de0ad
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -7445,8 +7445,10 @@ certificate_info() {
else
if [[ $(count_lines "$crl") -eq 1 ]]; then
out "$crl"
check_revocation_crl "$crl" "cert_CRLrevoked_${json_postfix}"
ret=$((ret +$?))
if [[ "$expfinding" != "expired" ]]; then
check_revocation_crl "$crl" "cert_CRLrevoked_${json_postfix}"
ret=$((ret +$?))
fi
outln
else # more than one CRL
first_crl=true
@ -7457,8 +7459,10 @@ certificate_info() {
out "$spaces"
fi
out "$line"
check_revocation_crl "$line" "cert_CRLrevoked_${json_postfix}"
ret=$((ret +$?))
if [[ "$expfinding" != "expired" ]]; then
check_revocation_crl "$line" "cert_CRLrevoked_${json_postfix}"
ret=$((ret +$?))
fi
outln
done <<< "$crl"
fi