new UML scenario certs have SHA256 digest
This commit is contained in:
@@ -42,7 +42,7 @@ crl_extensions = crl_ext # The extentions to add to the CRL
|
|||||||
|
|
||||||
default_days = 1825 # how long to certify for
|
default_days = 1825 # how long to certify for
|
||||||
default_crl_days= 30 # how long before next CRL
|
default_crl_days= 30 # how long before next CRL
|
||||||
default_md = sha1 # which md to use.
|
default_md = sha256 # which md to use.
|
||||||
preserve = no # keep passed DN ordering
|
preserve = no # keep passed DN ordering
|
||||||
email_in_dn = no # allow/forbid EMail in DN
|
email_in_dn = no # allow/forbid EMail in DN
|
||||||
|
|
||||||
@@ -146,6 +146,7 @@ subjectKeyIdentifier = hash
|
|||||||
authorityKeyIdentifier = keyid, issuer:always
|
authorityKeyIdentifier = keyid, issuer:always
|
||||||
subjectAltName = DNS:$ENV::COMMON_NAME
|
subjectAltName = DNS:$ENV::COMMON_NAME
|
||||||
#extendedKeyUsage = OCSPSigning
|
#extendedKeyUsage = OCSPSigning
|
||||||
|
#extendedKeyUsage = serverAuth
|
||||||
crlDistributionPoints = URI:http://crl.strongswan.org/strongswan.crl
|
crlDistributionPoints = URI:http://crl.strongswan.org/strongswan.crl
|
||||||
|
|
||||||
####################################################################
|
####################################################################
|
||||||
|
|||||||
Reference in New Issue
Block a user