|
@@ -38,12 +38,19 @@ proto_openconnect_setup() {
|
38
|
38
|
|
39
|
39
|
cmdline="$server$port -i vpn-$config --non-inter --syslog --script /lib/netifd/vpnc-script"
|
40
|
40
|
|
41
|
|
- [ -f /etc/openconnect/user-cert-vpn-$config.pem ] && append cmdline "-c /etc/openconnect/user-cert-vpn-$config.pem"
|
42
|
|
- [ -f /etc/openconnect/user-key-vpn-$config.pem ] && append cmdline "--sslkey /etc/openconnect/user-key-vpn-$config.pem"
|
43
|
|
- [ -f /etc/openconnect/ca-vpn-$config.pem ] && {
|
|
41
|
+ # migrate to new config files
|
|
42
|
+ [ -f /etc/openconnect/user-cert-vpn-$config.pem ] && mv "/etc/openconnect/user-cert-vpn-$config.pem" "/etc/config/openconnect-user-cert-vpn-$config.pem"
|
|
43
|
+ [ -f /etc/openconnect/user-key-vpn-$config.pem ] && mv "/etc/openconnect/user-key-vpn-$config.pem" "/etc/config/openconnect-user-key-vpn-$config.pem"
|
|
44
|
+ [ -f /etc/openconnect/ca-vpn-$config.pem ] && mv "/etc/openconnect/ca-vpn-$config.pem" "/etc/config/openconnect-ca-vpn-$config.pem"
|
|
45
|
+
|
|
46
|
+ # read new config files
|
|
47
|
+ [ -f /etc/config/openconnect-user-cert-vpn-$config.pem ] && append cmdline "-c /etc/config/openconnect-user-cert-vpn-$config.pem"
|
|
48
|
+ [ -f /etc/config/openconnect-user-key-vpn-$config.pem ] && append cmdline "--sslkey /etc/config/openconnect-user-key-vpn-$config.pem"
|
|
49
|
+ [ -f /etc/config/openconnect-ca-vpn-$config.pem ] && {
|
44
|
50
|
append cmdline "--cafile /etc/openconnect/ca-vpn-$config.pem"
|
45
|
51
|
append cmdline "--no-system-trust"
|
46
|
52
|
}
|
|
53
|
+
|
47
|
54
|
[ -n "$serverhash" ] && {
|
48
|
55
|
append cmdline " --servercert=$serverhash"
|
49
|
56
|
append cmdline "--no-system-trust"
|