diff options
author | Christian Breunig <christian@breunig.cc> | 2024-05-30 16:35:43 +0200 |
---|---|---|
committer | GitHub <noreply@github.com> | 2024-05-30 16:35:43 +0200 |
commit | 9859440abcad1e32b76b14a413c84c218f48bc0b (patch) | |
tree | 4a7708d720b87d103ac0039ce5a14faafe5f9785 /data | |
parent | 5978273c679b053dab2b878b476f0fd350a3e243 (diff) | |
parent | e6fe6e50a5c817e18c453e7bc42bb2e1c4b17671 (diff) | |
download | vyos-1x-9859440abcad1e32b76b14a413c84c218f48bc0b.tar.gz vyos-1x-9859440abcad1e32b76b14a413c84c218f48bc0b.zip |
Merge pull request #3552 from c-po/ipsec-profile
op-mode: ipsec: T6407: fix profile generation
Diffstat (limited to 'data')
-rw-r--r-- | data/templates/ipsec/ios_profile.j2 | 11 |
1 files changed, 8 insertions, 3 deletions
diff --git a/data/templates/ipsec/ios_profile.j2 b/data/templates/ipsec/ios_profile.j2 index eb74924b8..a9ae1c7a9 100644 --- a/data/templates/ipsec/ios_profile.j2 +++ b/data/templates/ipsec/ios_profile.j2 @@ -83,12 +83,15 @@ </dict> </dict> </dict> +{% if certs is vyos_defined %} <!-- This payload is optional but it provides an easy way to install the CA certificate together with the configuration --> +{% for cert in certs %} + <!-- Payload for: {{ cert.ca_cn }} --> <dict> <key>PayloadIdentifier</key> - <string>org.example.ca</string> + <string>org.{{ cert.ca_cn | lower | replace(' ', '.') | replace('_', '.') }}</string> <key>PayloadUUID</key> - <string>{{ '' | get_uuid }}</string> + <string>{{ cert.ca_cn | generate_uuid4 }}</string> <key>PayloadType</key> <string>com.apple.security.root</string> <key>PayloadVersion</key> @@ -96,9 +99,11 @@ <!-- This is the Base64 (PEM) encoded CA certificate --> <key>PayloadContent</key> <data> - {{ ca_cert }} + {{ cert.ca_cert }} </data> </dict> +{% endfor %} +{% endif %} </array> </dict> </plist> |