Since the script create_ssl_certs.sh is executed from inside the container, the directory is not the host one, but the container one.
13 lines
256 B
Bash
Executable File
13 lines
256 B
Bash
Executable File
#!/bin/sh
|
|
|
|
set -e
|
|
|
|
cd /var/lib/postgresql/data
|
|
|
|
cp ../certs/* .
|
|
chown postgres:postgres server.key
|
|
chmod 600 server.key
|
|
|
|
sed -i "s/^#ssl = off/ssl = on/" postgresql.conf
|
|
sed -i "s/^#ssl_ciphers =.*/ssl_ciphers = 'AES256+EECDH:AES256+EDH'/" postgresql.conf
|