|
new file 100644
|
|
|
# X.509 Certificate options
|
|
|
#
|
|
|
# DN options
|
|
|
|
|
|
# The organization of the subject.
|
|
|
organization = "Example Inc."
|
|
|
|
|
|
# The country of the subject. Two letter code.
|
|
|
country = SE
|
|
|
|
|
|
# The common name of the certificate owner.
|
|
|
cn = "Exampe Inc. {{ item.name }} Server"
|
|
|
|
|
|
# In how many days, counting from today, this certificate will expire.
|
|
|
expiration_days = 365
|
|
|
|
|
|
# X.509 v3 extensions
|
|
|
|
|
|
# A dnsname in case of a WWW server.
|
|
|
dns_name = "{{ item.hostname }}.{{ testsite_domain }}"
|
|
|
|
|
|
# Whether this certificate will be used for a TLS server
|
|
|
tls_www_server
|
|
|
|
|
|
# Whether this certificate will be used to sign data (needed
|
|
|
# in TLS DHE ciphersuites).
|
|
|
signing_key
|
|
|
|
|
|
# Whether this certificate will be used to encrypt data (needed
|
|
|
# in TLS RSA ciphersuites). Note that it is preferred to use different
|
|
|
# keys for encryption and signing.
|
|
|
encryption_key
|