Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 1 | ##================================================================
|
| 2 | ##============== Example OpenSSL configuration file ==============
|
| 3 | ##================================================================
|
| 4 |
|
| 5 | # References:
|
| 6 | #
|
| 7 | # /etc/ssl/openssl.conf
|
| 8 | # http://www.openssl.org/docs/apps/config.html
|
| 9 | # http://www.openssl.org/docs/apps/x509v3_config.html
|
| 10 |
|
| 11 | [ ca ]
|
| 12 | default_ca = my_ca
|
| 13 |
|
| 14 | [ my_ca ]
|
| 15 | certificate = test-ca.crt
|
| 16 | private_key = test-ca.key
|
| 17 | database = index
|
| 18 | serial = serial
|
| 19 |
|
| 20 | new_certs_dir = newcerts
|
| 21 | default_crl_days = 60
|
| 22 | default_days = 730
|
| 23 | default_md = sha1
|
| 24 | policy = my_policy
|
| 25 | x509_extensions = v3_usr
|
| 26 |
|
| 27 | [ my_policy ]
|
Paul Bakker | b29e23c | 2009-02-09 21:06:41 +0000 | [diff] [blame] | 28 | countryName = supplied
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 29 | organizationName = match
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 30 | commonName = supplied
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 31 |
|
| 32 | [ req ]
|
| 33 | distinguished_name = my_req_dn
|
| 34 | x509_extensions = v3_ca
|
Paul Bakker | b29e23c | 2009-02-09 21:06:41 +0000 | [diff] [blame] | 35 | prompt = no
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 36 |
|
| 37 | [ v3_ca ]
|
| 38 | basicConstraints = CA:TRUE
|
| 39 | subjectKeyIdentifier = hash
|
| 40 | authorityKeyIdentifier = keyid:always,issuer:always
|
| 41 |
|
| 42 | [ v3_usr ]
|
| 43 | basicConstraints = CA:FALSE
|
| 44 | subjectKeyIdentifier = hash
|
| 45 | authorityKeyIdentifier = keyid,issuer
|
Paul Bakker | 3375b21 | 2009-01-15 20:46:08 +0000 | [diff] [blame] | 46 |
|
Paul Bakker | b29e23c | 2009-02-09 21:06:41 +0000 | [diff] [blame] | 47 | [ my_req_dn ]
|
| 48 | C=NL
|
| 49 | O=PolarSSL
|