summaryrefslogtreecommitdiffstats
path: root/puppet/modules/network_test_server/files/ssl/qt-test-server-openssl.cnf
blob: 1d9decf2d9d3df001a480f89c29dd03a7625da84 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
#
# OpenSSL configuration file.
#
 
# Establish working directory.
 
dir					= .
 
[ ca ]
default_ca				= CA_default
 
[ CA_default ]
serial					= $dir/serial
database				= $dir/certindex.txt
new_certs_dir				= $dir/certs
certificate				= $dir/qt-test-server-cacert.pem
private_key				= $dir/private/qt-test-server-cakey.pem
default_days				= 3650
default_md				= md5
preserve				= no
email_in_dn				= no
nameopt					= default_ca
certopt					= default_ca
policy					= policy_match
 
[ policy_match ]
countryName				= match
stateOrProvinceName			= match
organizationName			= match
organizationalUnitName			= optional
commonName				= supplied
emailAddress				= optional
 
[ req ]
default_bits				= 4096			# Size of keys
default_keyfile				= key.pem		# name of generated keys
default_md				= sha512				# message digest algorithm
string_mask				= nombstr		# permitted characters
distinguished_name			= req_distinguished_name
req_extensions				= v3_req
 
[ req_distinguished_name ]
# Variable name				Prompt string
#-------------------------	  ----------------------------------
0.organizationName			= The Qt Company
organizationalUnitName			= Qt Software
emailAddress				= nobody@nodomain.org
emailAddress_max			= 40
localityName				= Oslo
stateOrProvinceName			= Oslo
countryName				= NO
countryName_min				= 2
countryName_max				= 2
commonName				= qt-test-server.qt-test-net
commonName_max				= 64
 
# Default values for the above, for consistency and less typing.
# Variable name				Value
#------------------------	  ------------------------------
0.organizationName_default		= The Qt Company
localityName_default			= Oslo
stateOrProvinceName_default		= Oslo
countryName_default			= NO
 
[ v3_ca ]
basicConstraints			= CA:TRUE
subjectKeyIdentifier			= hash
authorityKeyIdentifier			= keyid:always,issuer:always
 
[ v3_req ]
basicConstraints			= CA:FALSE
subjectKeyIdentifier			= hash