#!/bin/sh

set -e

case "${1}" in
    configure)
        if ! getent group xpra >> /dev/null 2>&1; then
            addgroup --quiet --system xpra
        fi
    ;;
esac

if [ ! -f  /etc/xpra/ssl-cert.pem ]; then
	umask=`umask`
	umask 077
	openssl req -new -newkey rsa:4096 -days 3650 -nodes -x509 \
		-subj "/C=US/ST=Denial/L=Springfield/O=Dis/CN=localhost" \
		-keyout "/etc/xpra/key.pem" -out "/etc/xpra/cert.pem"
	cat /etc/xpra/key.pem /etc/xpra/cert.pem > /etc/xpra/ssl-cert.pem
	umask $umask
	chmod 644 /etc/xpra/cert.pem
fi

#DEBHELPER#
