OpenSSL configuration examples
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

subcareq.conf 1.6KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445
  1. # Request configuration for Sub CA certificate
  2. #
  3. # Author: Jan Dittberner <jan@dittberner.info>
  4. # Date: 2015-02-03
  5. RANDFILE = $ENV::HOME/ca/.rnd
  6. [ req ]
  7. default_bits = 4096
  8. distinguished_name = req_distinguished_name
  9. req_extensions = v3_subca_ext
  10. utf8 = yes
  11. default_md = sha256
  12. string_mask = utf8only
  13. [ req_distinguished_name ]
  14. countryName = Country Name (2 letter code)
  15. countryName_default = DE
  16. countryName_min = 2
  17. countryName_max = 2
  18. stateOrProvinceName = State or Province Name (full name)
  19. stateOrProvinceName_default = Saxony
  20. localityName = Locality Name (eg, city)
  21. localityName_default = Example Town
  22. 0.organizationName = Organization Name (eg, company)
  23. 0.organizationName_default = Example Organization
  24. organizationalUnitName = Organizational Unit Name (eg, section)
  25. organizationalUnitName_default = Example Lab
  26. commonName = Common Name (eg, YOUR name)
  27. commonName_max = 64
  28. commonName_default = Example Lab Sub CA
  29. emailAddress = Email Address
  30. emailAddress_max = 64
  31. emailAddress_default = subca@example.org
  32. [ v3_subca_ext ]
  33. basicConstraints = critical, CA:true, pathlen:0
  34. keyUsage = critical, keyCertSign,cRLSign
  35. nsComment = "Example Labs Sub CA Certificate"