#!/bin/sh # Run as: # opensslverify.sh # # `openssl verify` doesn't return an error code if the cert fails # to verify, so we have to grep the output, and we can't do that via # nsIProcess, so we use a shell script. if openssl verify -CAfile $1 -purpose sslserver $2 2>&1 | grep -q "^error"; then exit 1; else exit 0; fi