diff --git a/docker/signer-config/class3-client-codesign.cnf b/docker/signer-config/class3-client-codesign.cnf index c6713c3..4d29fab 100644 --- a/docker/signer-config/class3-client-codesign.cnf +++ b/docker/signer-config/class3-client-codesign.cnf @@ -29,10 +29,10 @@ commonName = optional emailAddress = optional [ usr_cert ] -basicConstraints = critical, CA:FALSE +basicConstraints = critical,CA:FALSE nsComment = "To get your own certificate for FREE head over to http://www.CAcert.org" -keyUsage = critical, digitalSignature, keyEncipherment, keyAgreement -extendedKeyUsage = emailProtection, clientAuth, codeSigning, msCodeInd, msCodeCom, msEFS, msSGC, nsSGC +keyUsage = critical,digitalSignature,keyEncipherment,keyAgreement +extendedKeyUsage = emailProtection,clientAuth,codeSigning,msCodeInd,msCodeCom,msEFS,msSGC,nsSGC authorityInfoAccess = OCSP;URI:http://ocsp.cacert.org crlDistributionPoints = URI:http://crl.cacert.localhost/test-class3-revoke.crl subjectAltName = email:copy diff --git a/docker/signer-config/class3-client-org.cnf b/docker/signer-config/class3-client-org.cnf index ebb09a2..eef5545 100644 --- a/docker/signer-config/class3-client-org.cnf +++ b/docker/signer-config/class3-client-org.cnf @@ -29,10 +29,10 @@ commonName = optional emailAddress = optional [ usr_cert ] -basicConstraints = critical, CA:FALSE +basicConstraints = critical,CA:FALSE nsComment = "To get your own certificate for FREE head over to http://www.CAcert.org" -keyUsage = critical, digitalSignature, keyEncipherment, keyAgreement -extendedKeyUsage = emailProtection, clientAuth, msEFS, msSGC, nsSGC +keyUsage = critical,digitalSignature,keyEncipherment,keyAgreement +extendedKeyUsage = emailProtection,clientAuth,msEFS,msSGC,nsSGC authorityInfoAccess = OCSP;URI:http://ocsp.cacert.org crlDistributionPoints = URI:http://crl.cacert.localhost/class3-revoke.crl subjectAltName = email:copy diff --git a/docker/signer-config/class3-client.cnf b/docker/signer-config/class3-client.cnf index b9624f8..b800583 100644 --- a/docker/signer-config/class3-client.cnf +++ b/docker/signer-config/class3-client.cnf @@ -30,10 +30,10 @@ commonName = optional emailAddress = optional [ usr_cert ] -basicConstraints = critical, CA:FALSE +basicConstraints = critical,CA:FALSE nsComment = "To get your own certificate for FREE head over to http://www.CAcert.org" -keyUsage = critical, digitalSignature, keyEncipherment, keyAgreement -extendedKeyUsage = emailProtection, clientAuth, msEFS, msSGC, nsSGC +keyUsage = critical,digitalSignature,keyEncipherment,keyAgreement +extendedKeyUsage = emailProtection,clientAuth,msEFS,msSGC,nsSGC authorityInfoAccess = OCSP;URI:http://ocsp.cacert.org crlDistributionPoints = URI:http://crl.cacert.localhost/class3-revoke.crl subjectAltName = email:copy