Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 1 | ##================================================================
|
| 2 | ##============== Example OpenSSL configuration file ==============
|
| 3 | ##================================================================
|
| 4 |
|
| 5 | # References:
|
| 6 | #
|
| 7 | # /etc/ssl/openssl.conf
|
| 8 | # http://www.openssl.org/docs/apps/config.html
|
| 9 | # http://www.openssl.org/docs/apps/x509v3_config.html
|
| 10 |
|
| 11 | [ ca ]
|
| 12 | default_ca = my_ca
|
| 13 |
|
| 14 | [ my_ca ]
|
| 15 | certificate = test-ca.crt
|
| 16 | private_key = test-ca.key
|
| 17 | database = index
|
| 18 | serial = serial
|
| 19 |
|
| 20 | new_certs_dir = newcerts
|
Paul Bakker | 400ff6f | 2011-02-20 10:40:16 +0000 | [diff] [blame] | 21 | default_crl_days = 5
|
| 22 | default_days = 3653
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 23 | default_md = sha1
|
| 24 | policy = my_policy
|
| 25 | x509_extensions = v3_usr
|
Paul Bakker | a8cd239 | 2012-02-11 16:09:32 +0000 | [diff] [blame] | 26 | copy_extensions = copy
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 27 |
|
| 28 | [ my_policy ]
|
Paul Bakker | b29e23c | 2009-02-09 21:06:41 +0000 | [diff] [blame] | 29 | countryName = supplied
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 30 | organizationName = match
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 31 | commonName = supplied
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 32 |
|
| 33 | [ req ]
|
| 34 | distinguished_name = my_req_dn
|
| 35 | x509_extensions = v3_ca
|
Paul Bakker | a8cd239 | 2012-02-11 16:09:32 +0000 | [diff] [blame] | 36 | prompt = no
|
Paul Bakker | 5121ce5 | 2009-01-03 21:22:43 +0000 | [diff] [blame] | 37 |
|
| 38 | [ v3_ca ]
|
| 39 | basicConstraints = CA:TRUE
|
| 40 | subjectKeyIdentifier = hash
|
| 41 | authorityKeyIdentifier = keyid:always,issuer:always
|
| 42 |
|
| 43 | [ v3_usr ]
|
| 44 | basicConstraints = CA:FALSE
|
| 45 | subjectKeyIdentifier = hash
|
| 46 | authorityKeyIdentifier = keyid,issuer
|
Paul Bakker | 3375b21 | 2009-01-15 20:46:08 +0000 | [diff] [blame] | 47 |
|
Paul Bakker | b29e23c | 2009-02-09 21:06:41 +0000 | [diff] [blame] | 48 | [ my_req_dn ]
|
| 49 | C=NL
|
| 50 | O=PolarSSL
|