remove lndcert ... using unsafe tls instead

This commit is contained in:
keyan 2021-06-10 19:49:20 -05:00
parent 36bf925f2d
commit 80c5cff3cf
2 changed files with 1 additions and 59 deletions

View File

@ -1,58 +0,0 @@
files:
"/var/certs/lnd.pem":
mode: "000644"
owner: root
group: root
content: |
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
43:8d:34:42:a4:6e:c3:4e:28:07:be:c4:d2:11:71:1f
Signature Algorithm: ecdsa-with-SHA256
Issuer: O=lnd autogenerated cert, CN=3.221.75.254.local
Validity
Not Before: May 28 18:57:10 2021 GMT
Not After : Jul 23 18:57:10 2022 GMT
Subject: O=lnd autogenerated cert, CN=3.221.75.254.local
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:5b:18:3a:6c:1d:69:ab:d3:29:f1:86:e2:95:8d:
56:54:4b:f7:5b:4a:cc:af:08:f2:da:1a:ba:22:dd:
61:ed:d2:48:35:a4:77:52:66:43:60:5f:95:61:f9:
67:c1:2e:c7:c4:32:53:6c:17:9b:fc:c8:6d:3e:cc:
48:87:09:7d:89
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Subject Key Identifier:
D3:99:3A:E6:A6:60:6B:10:6B:72:19:FF:6D:E5:0E:51:A7:B1:27:2D
X509v3 Subject Alternative Name:
DNS:localhost, DNS:3.221.75.254.local, DNS:unix, DNS:unixpacket, DNS:bufconn, IP Address:127.0.0.1, IP Address:0:0:0:0:0:0:0:1, IP Address:10.21.21.9
Signature Algorithm: ecdsa-with-SHA256
30:45:02:20:1e:d7:07:0f:03:f6:53:cc:3c:6a:59:f6:57:58:
41:93:0b:07:89:3b:0c:35:54:bb:fd:0e:3c:04:d7:a7:09:81:
02:21:00:d4:46:1a:2d:af:f8:4f:a8:ad:73:15:12:95:62:52:
93:ca:79:0a:be:0a:c2:f5:6b:bd:a3:54:5d:2a:88:31:c5
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

View File

@ -1,7 +1,7 @@
import lndService from 'ln-service'
const { lnd } = lndService.authenticatedLndGrpc({
// cert: process.env.LND_CERT,
cert: process.env.LND_CERT,
macaroon: process.env.LND_MACAROON,
socket: process.env.LND_SOCKET
})