#!/bin/sh

# Make a certificate/private key pair using a locally generated
# root certificate.
#
# Explicitly set nsCertType to server using the "server"
# extension in the openssl.cnf file.

export EASY_RSA="${EASY_RSA:-/etc/easy-rsa}"
/usr/sbin/pkitool --interact --server $*
