diff options
Diffstat (limited to 'rpkid/resource-cert-samples/ISP5b.cnf')
-rw-r--r-- | rpkid/resource-cert-samples/ISP5b.cnf | 64 |
1 files changed, 64 insertions, 0 deletions
diff --git a/rpkid/resource-cert-samples/ISP5b.cnf b/rpkid/resource-cert-samples/ISP5b.cnf new file mode 100644 index 00000000..c7127044 --- /dev/null +++ b/rpkid/resource-cert-samples/ISP5b.cnf @@ -0,0 +1,64 @@ +# Automatically generated, do not edit. + +[ ca ] +default_ca = ca_default + +[ ca_default ] +certificate = ISP5b.cer +serial = ISP5b/serial +private_key = ISP5b.key +database = ISP5b/index +new_certs_dir = ISP5b +name_opt = ca_default +cert_opt = ca_default +default_days = 365 +default_crl_days = 30 +default_md = sha256 +preserve = no +copy_extensions = copy +policy = ca_policy_anything +unique_subject = no +x509_extensions = ca_x509_ext +crl_extensions = crl_x509_ext + +[ ca_policy_anything ] +countryName = optional +stateOrProvinceName = optional +localityName = optional +organizationName = optional +organizationalUnitName = optional +commonName = supplied +emailAddress = optional +givenName = optional +surname = optional + +[ req ] +default_bits = 2048 +encrypt_key = no +distinguished_name = req_dn +req_extensions = req_x509_ext +prompt = no + +[ req_dn ] +CN = TEST ENTITY ISP5b + +[ req_x509_ext ] +basicConstraints = critical,CA:true +subjectKeyIdentifier = hash +keyUsage = critical,keyCertSign,cRLSign +subjectInfoAccess = 1.3.6.1.5.5.7.48.5;URI:rsync://wombats-r-us.hactrn.net/ISP5b/ +authorityInfoAccess = caIssuers;URI:rsync://wombats-r-us.hactrn.net/LIR3.cer +#sbgp-autonomousSysNum = critical,??? +sbgp-ipAddrBlock = critical,IPv4:10.3.0.0/24,IPv6:2001:db8::a03:0/120 + +[ ca_x509_ext ] +basicConstraints = critical,CA:true +authorityKeyIdentifier = keyid:always +keyUsage = critical,keyCertSign,cRLSign +subjectInfoAccess = 1.3.6.1.5.5.7.48.5;URI:rsync://wombats-r-us.hactrn.net/ISP5b/ +authorityInfoAccess = caIssuers;URI:rsync://wombats-r-us.hactrn.net/LIR3.cer +#sbgp-autonomousSysNum = critical,??? +sbgp-ipAddrBlock = critical,IPv4:10.3.0.0/24,IPv6:2001:db8::a03:0/120 + +[ crl_x509_ext ] +authorityKeyIdentifier = keyid:always |