ca.config.sample 1.8 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768
  1. [ ca ]
  2. default_ca = CA_default # The default ca section
  3. ####################################################################
  4. [ CA_default ]
  5. dir = ./db
  6. certs = ./db
  7. new_certs_dir = ./db/ca.db.certs
  8. database = ./db/ca.db.index
  9. serial = ./db/ca.db.serial
  10. certificate = ./certificats/ca.crt
  11. private_key = ./certificats/ca.key
  12. default_days = 3000
  13. default_crl_days = 30
  14. default_md = sha256
  15. preserve = no
  16. distinguished_name = req_distinguished_name
  17. policy = generic_policy
  18. [ req ]
  19. distinguished_name = req_noms_distingues
  20. policy = generic_policy
  21. req_extensions = v3_req
  22. [ v3_req ]
  23. # Extensions to add to a certificate request
  24. basicConstraints = CA:FALSE
  25. keyUsage = nonRepudiation, digitalSignature, keyEncipherment
  26. subjectAltName = @alt_names
  27. [alt_names]
  28. DNS.1 = DNSCHANGEME
  29. IP.1 = 0.0.0.0
  30. [ req_noms_distingues ]
  31. organizationName = Organizationnal Name
  32. organizationalUnitName = Organizational Unit Name (department, division)
  33. emailAddress = Email Address
  34. emailAddress_max = 40
  35. localityName = Locality Name (city, district)
  36. stateOrProvinceName = State or Province Name (full name)
  37. countryName = Country Name (2 letter code)
  38. countryName_min = 2
  39. countryName_max = 2
  40. commonName = Common Name (hostname, IP, or your name)
  41. commonName_max = 64
  42. countryName_default = FR
  43. organizationName_default = IMAO-SAS Certificate authority
  44. localityName_default = Limoges
  45. stateOrProvinceName_default = Limousin
  46. organizationalUnitName_default = Information Technology
  47. emailAddress_default = it@imao-fr.com
  48. commonName_default = Root Certificate
  49. [ generic_policy ]
  50. countryName = optional
  51. stateOrProvinceName = optional
  52. localityName = optional
  53. organizationName = optional
  54. organizationalUnitName = optional
  55. commonName = supplied
  56. emailAddress = optional