blob: 22325e3a0f7d59ceca6bd5310e5cb46bc15a2d80 [file] [log] [blame]
David Benjamin33b56922022-12-31 17:16:53 -05001# [ CA_default ]
2
3dir = ./demoCA
4certificate = ./demoCA/cacert.pem
5serial = ./demoCA/serial
6private_key = ./demoCA/private/cakey.pem
7new_certs_dir = ./demoCA/newcerts
8
9certificate = cacert.pem
10private_key = cakey.pem
11
12x509_extensions = v3_user
13
14name_opt = ca_default # Subject Name options
15cert_opt = ca_default # Certificate field options
16
17policy = policy_anything
18
19####################################################################
20[ req ]
21default_bits = 2432
22default_keyfile = cakey.pem
23default_md = sha256
24distinguished_name = req_DN
25string_mask = utf8only
26x509_extensions = v3_selfsign
27
28[ req_DN ]
29commonName = "Common Name"
30commonName_value = "CA"
31
32[ v3_selfsign ]
33basicConstraints = critical,CA:true
34keyUsage = keyCertSign
35subjectKeyIdentifier=hash
36
37####################################################################
38[ ca ]
39default_ca = CA_default # The default ca section
40
41####################################################################
42[ CA_default ]
43
44dir = ./demoCA
45certificate = ./demoCA/cacert.pem
46serial = ./demoCA/serial
47private_key = ./demoCA/private/cakey.pem
48new_certs_dir = ./demoCA/newcerts
49
50certificate = cacert.pem
51private_key = cakey.pem
52
53x509_extensions = v3_user
54
55name_opt = ca_default # Subject Name options
56cert_opt = ca_default # Certificate field options
57
58policy = policy_anything
59
60[ policy_anything ]
61countryName = optional
62stateOrProvinceName = optional
63localityName = optional
64organizationName = optional
65organizationalUnitName = optional
66commonName = supplied
67emailAddress = optional
68
69[ v3_user ]
70basicConstraints=critical,CA:FALSE
71subjectKeyIdentifier=hash
72authorityKeyIdentifier=keyid,issuer
73issuerAltName=issuer:copy
74