OpenSSL -- TLS Server Certificate Request Configuration File
Zur Navigation springen
Zur Suche springen
# TLS server certificate request [ default ] SAN = DNS:yourdomain.tld # Default value [ req ] default_bits = 8192 # RSA key size encrypt_key = no # Protect private key default_md = sha256 # MD to use utf8 = yes # Input is UTF-8 string_mask = utf8only # Emit UTF-8 strings prompt = yes # Prompt for DN distinguished_name = server_dn # DN template req_extensions = server_reqext # Desired extensions [ server_dn ] countryName = "1. Country Name (2 letters) (eg, US) " countryName_max = 2 stateOrProvinceName = "2. State or Province Name (eg, region) " localityName = "3. Locality Name (eg, city) " organizationName = "4. Organization Name (eg, company) " organizationalUnitName = "5. Organizational Unit Name (eg, section) " commonName = "6. Common Name (eg, FQDN) " commonName_max = 64 [ server_reqext ] keyUsage = critical,digitalSignature,keyEncipherment extendedKeyUsage = serverAuth,clientAuth subjectKeyIdentifier = hash subjectAltName = $ENV::SAN