aboutsummaryrefslogtreecommitdiff
path: root/scripts/testroot.cnf
diff options
context:
space:
mode:
Diffstat (limited to 'scripts/testroot.cnf')
-rw-r--r--scripts/testroot.cnf50
1 files changed, 4 insertions, 46 deletions
diff --git a/scripts/testroot.cnf b/scripts/testroot.cnf
index a962316a..a1c256c9 100644
--- a/scripts/testroot.cnf
+++ b/scripts/testroot.cnf
@@ -2,38 +2,6 @@
#
# Generate test root resource certificate for use with testroot.py server.
-[ ca ]
-default_ca = ca_default
-
-[ ca_default ]
-certificate = testroot.cer
-serial = testroot.serial
-private_key = testroot.key
-database = testroot.index
-new_certs_dir = .
-name_opt = ca_default
-cert_opt = ca_default
-default_days = 365
-default_crl_days = 30
-default_md = sha256
-preserve = no
-copy_extensions = copy
-policy = ca_policy_anything
-unique_subject = no
-x509_extensions = ca_x509_ext
-crl_extensions = crl_x509_ext
-
-[ ca_policy_anything ]
-countryName = optional
-stateOrProvinceName = optional
-localityName = optional
-organizationName = optional
-organizationalUnitName = optional
-commonName = supplied
-emailAddress = optional
-givenName = optional
-surname = optional
-
[ req ]
default_bits = 2048
encrypt_key = no
@@ -49,26 +17,16 @@ basicConstraints = critical,CA:true
subjectKeyIdentifier = hash
keyUsage = critical,keyCertSign,cRLSign
subjectInfoAccess = 1.3.6.1.5.5.7.48.5;URI:rsync://wombat.invalid/
-sbgp-autonomousSysNum = critical,@asid_ext
-sbgp-ipAddrBlock = critical,@addr_ext
-
-[ ca_x509_ext ]
-basicConstraints = critical,CA:true
-keyUsage = critical,keyCertSign,cRLSign
-subjectInfoAccess = 1.3.6.1.5.5.7.48.5;URI:rsync://wombat.invalid/
-sbgp-autonomousSysNum = critical,@asid_ext
-sbgp-ipAddrBlock = critical,@addr_ext
-
-[ crl_x509_ext ]
-authorityKeyIdentifier = keyid:always
+sbgp-autonomousSysNum = critical,@req_asid_ext
+sbgp-ipAddrBlock = critical,@req_addr_ext
-[ asid_ext ]
+[ req_asid_ext ]
AS.0 = 64533
AS.1 = 64534-64540
AS.2 = 64544
-[ addr_ext ]
+[ req_addr_ext ]
IPv4.0 = 10.0.0.0/24
IPv4.1 = 10.3.0.0/24