# X.509 Certificate options # # DN options # The organization of the subject. organization = "Example Inc." # The country of the subject. Two letter code. country = SE # The common name of the certificate owner. cn = "Exampe Inc. {{ item.name }} Server" # In how many days, counting from today, this certificate will expire. expiration_days = 365 # X.509 v3 extensions # A dnsname in case of a WWW server. dns_name = "{{ item.hostname }}.{{ testsite_domain }}" {% for dns_name in item.extra_dns_names | default([]) %} dns_name = "{{ dns_name }}" {% endfor %} # Whether this certificate will be used for a TLS server tls_www_server # Whether this certificate will be used to sign data (needed # in TLS DHE ciphersuites). signing_key # Whether this certificate will be used to encrypt data (needed # in TLS RSA ciphersuites). Note that it is preferred to use different # keys for encryption and signing. encryption_key