📄 globus-host-ssl.conf.1c3f2ca8
字号:
# $Id: globus-host-ssl.conf.1c3f2ca8,v 1.1.1.1 2007/05/01 20:08:51 asim Exp $## SSLeay example configuration file.# This is mostly being used for generation of certificate requests.#RANDFILE = $ENV::HOME/.rnd####################################################################[ ca ]default_ca = CA_default # The default ca section####################################################################[ CA_default ]dir = ./demoCA # Where everything is keptcerts = $dir/certs # Where the issued certs are keptcrl_dir = $dir/crl # Where the issued crl are keptdatabase = $dir/index.txt # database index file.new_certs_dir = $dir/newcerts # default place for new certs.certificate = $dir/cacert.pem # The CA certificateserial = $dir/serial # The current serial numbercrl = $dir/crl.pem # The current CRLprivate_key = $dir/private/cakey.pem# The private keyRANDFILE = $dir/private/.rand # private random number filex509_extensions = x509v3_extensions # The extentions to add to the certdefault_days = 365 # how long to certify fordefault_crl_days= 365 # DEE 30 # how long before next CRLdefault_md = md5 # which md to use.preserve = no # keep passed DN ordering# A few difference way of specifying how similar the request should look# For type CA, the listed attributes must be the same, and the optional# and supplied fields are just that :-)policy = policy_match# For the CA policy[ policy_match ]countryName = matchstateOrProvinceName = optionalorganizationName = matchorganizationalUnitName = optionalcommonName = suppliedemailAddress = optional# For the 'anything' policy# At this point in time, you must list all acceptable 'object'# types.[ policy_anything ]countryName = optionalstateOrProvinceName = optionallocalityName = optionalorganizationName = optionalorganizationalUnitName = optionalcommonName = suppliedemailAddress = optional####################################################################[ req ]default_bits = 1024default_keyfile = privkey.pemdistinguished_name = req_distinguished_nameattributes = req_attributes[ req_distinguished_name ]# BEGIN CONFIG0.domainComponent = Level 0 DomainComponent0.domainComponent_default = org1.domainComponent = Level 1 DomainComponent1.domainComponent_default = doegrids0.organizationalUnitName = Level 0 OrganizationalUnit0.organizationalUnitName_default = ServicescommonName = Name (e.g., John M. Smith)commonName_max = 64# END CONFIG[ req_attributes ]#challengePassword = A challenge password#challengePassword_min = 6#challengePassword_max = 20#unstructuredName = An optional company name[ x509v3_extensions ]#nsCaRevocationUrl = http://www.globus.org/ca-crl.pem#nsComment = "This is a comment"# under ASN.1, the 0 bit would be encoded as 80nsCertType = 0x40#nsBaseUrl#nsRevocationUrl#nsRenewalUrl#nsCaPolicyUrl#nsSslServerName#nsCertSequence#nsCertExt#nsDataType# $Log: globus-host-ssl.conf.1c3f2ca8,v $# Revision 1.1.1.1 2007/05/01 20:08:51 asim# DML## Revision 1.1 2007/04/03 22:19:15 asim## doegrids certs## Revision 1.1 2003/05/22 22:38:22 helm# *** empty log message ***## Revision 1.1 2003/05/13 20:05:35 helm# move support files to hash name## Revision 1.4 2003/05/09 22:15:10 helm# lower case## Revision 1.3 2003/05/03 01:34:17 dhiva# This config file was prepared by Mary Thompson# Changes:# Replaced the OIDs with DomainComponent## Revision 1.2 2003/05/03 01:18:09 dhiva# $Id: globus-host-ssl.conf.1c3f2ca8,v 1.1.1.1 2007/05/01 20:08:51 asim Exp $ included for all these files## Revision 1.1 2003/05/03 01:15:06 dhiva# Globus Support Files for pki1.doegrids.org CA#
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -