From 6d5274c5b106c986b7ad91bd3916821156c2421f Mon Sep 17 00:00:00 2001 From: Christian Hesse Date: Thu, 19 Mar 2026 09:45:00 +0100 Subject: [PATCH] check-certificates: change order of conditions... ... to better match both loops. --- check-certificates.rsc | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/check-certificates.rsc b/check-certificates.rsc index 194247c6..7e2fed04 100644 --- a/check-certificates.rsc +++ b/check-certificates.rsc @@ -164,8 +164,8 @@ } $WaitFullyConnected; - :foreach Cert in=[ /certificate/find where !revoked !ca !scep-url expires-after<$CertRenewTime \ - (common-name or subject-alt-name) ] do={ + :foreach Cert in=[ /certificate/find where !revoked !scep-url expires-after<$CertRenewTime \ + !ca (common-name or subject-alt-name) ] do={ :local CertVal [ /certificate/get $Cert ]; :local LastName; :local FetchName; @@ -245,8 +245,8 @@ } } - :foreach Cert in=[ /certificate/find where !revoked !scep-url !(expires-after=[]) \ - expires-after<$CertWarnTime !(fingerprint=[]) ] do={ + :foreach Cert in=[ /certificate/find where !revoked !scep-url expires-after<$CertWarnTime \ + !(expires-after=[]) !(fingerprint=[]) ] do={ :local CertVal [ /certificate/get $Cert ]; :if ([ :len [ /certificate/scep-server/find where ca-cert=($CertVal->"ca") ] ] > 0) do={