Files
@ 53d19f5bc8a1
Branch filter:
Location: majic-ansible-roles/testsite/tls/gnutls_server_certificate.cfg.j2 - annotation
53d19f5bc8a1
926 B
text/plain
MAR-151: Switch to Debian 10 Buster in usage instructions:
- Specify that Debian Buster should be used instead of Debian Stretch.
- Switch to using https links where possible.
- Minor fixes to wording/instructions.
- Updated link towards Debian Buster preseed documentation appendix.
- Use Python 3 when serving the preseed files.
- Fixed DNS subject alternative name for the XMPP server (it should be
the domain served by the XMPP server, not its canonical FQDN).
- Added small note for database_server role and how it sets-up root
account authentication, and update instructions for logging-in into
database server as root.
- Specify that Debian Buster should be used instead of Debian Stretch.
- Switch to using https links where possible.
- Minor fixes to wording/instructions.
- Updated link towards Debian Buster preseed documentation appendix.
- Use Python 3 when serving the preseed files.
- Fixed DNS subject alternative name for the XMPP server (it should be
the domain served by the XMPP server, not its canonical FQDN).
- Added small note for database_server role and how it sets-up root
account authentication, and update instructions for logging-in into
database server as root.
052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 70733167cdf8 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 70733167cdf8 2ded0cbae449 2ded0cbae449 2ded0cbae449 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 052eefc4fab0 884beb9a0e1d 884beb9a0e1d 884beb9a0e1d 884beb9a0e1d 884beb9a0e1d | # X.509 Certificate options
#
# DN options
# The organization of the subject.
organization = "Example Inc."
# The country of the subject. Two letter code.
country = SE
# The common name of the certificate owner.
cn = "Exampe Inc. {{ item.name }} Server"
# In how many days, counting from today, this certificate will expire.
expiration_days = 365
# X.509 v3 extensions
# A dnsname in case of a WWW server.
dns_name = "{{ item.hostname }}.{{ testsite_domain }}"
{% for dns_name in item.extra_dns_names | default([]) %}
dns_name = "{{ dns_name }}"
{% endfor %}
# Whether this certificate will be used for a TLS server
tls_www_server
# Whether this certificate will be used to sign data (needed
# in TLS DHE ciphersuites).
signing_key
# Whether this certificate will be used to encrypt data (needed
# in TLS RSA ciphersuites). Note that it is preferred to use different
# keys for encryption and signing.
encryption_key
|