|  | 
 |  | 
 | 
												
													
														| 310 |          CERTFILE="ca-$HOSTNAME"
 | 310 |          CERTFILE="ca-$HOSTNAME"
 | 
												
													
														| 311 |      fi
 | 311 |      fi
 | 
												
													
														| 312 |  
 | 312 |  
 | 
												
													
														| 313 | -    openssl req -x509 "${EXTENSIONS}" -nodes -days 3650 -sha256 \
 |  | 
 | 
												
													
														|  | 
 | 313 | +    # shellcheck disable=SC2086
 | 
												
													
														|  | 
 | 314 | +    openssl req -x509 ${EXTENSIONS} -nodes -days 3650 -sha256 \
 | 
												
													
														| 314 |              -subj "/O=$ORGANISATION/OU=$UNIT/C=$COUNTRY_CODE/ST=$AREA/L=$LOCATION/CN=$HOSTNAME" \
 | 315 |              -subj "/O=$ORGANISATION/OU=$UNIT/C=$COUNTRY_CODE/ST=$AREA/L=$LOCATION/CN=$HOSTNAME" \
 | 
												
													
														| 315 |              -newkey rsa:2048 -keyout "/etc/ssl/private/${CERTFILE}.key" \
 | 316 |              -newkey rsa:2048 -keyout "/etc/ssl/private/${CERTFILE}.key" \
 | 
												
													
														| 316 |              -out "/etc/ssl/certs/${CERTFILE}.crt"
 | 317 |              -out "/etc/ssl/certs/${CERTFILE}.crt"
 |