1#
2# SSLeay example configuration file.
3# This is mostly being used for generation of certificate requests.
4#
5
6RANDFILE		= /dev/arandom
7
8####################################################################
9[ req ]
10default_bits		= 1024
11default_keyfile 	= privkey.pem
12distinguished_name	= req_distinguished_name
13attributes		= req_attributes
14
15[ req_distinguished_name ]
16countryName			= Country Name (2 letter code)
17#countryName_default		= AU
18countryName_min			= 2
19countryName_max			= 2
20
21stateOrProvinceName		= State or Province Name (full name)
22#stateOrProvinceName_default	= Some-State
23
24localityName			= Locality Name (eg, city)
25
260.organizationName		= Organization Name (eg, company)
27#0.organizationName_default	= Internet Widgits Pty Ltd
28
29# we can do this but it is not needed normally :-)
30#1.organizationName		= Second Organization Name (eg, company)
31#1.organizationName_default	= CryptSoft Pty Ltd
32
33organizationalUnitName		= Organizational Unit Name (eg, section)
34#organizationalUnitName_default	=
35
36commonName			= Common Name (eg, fully qualified host name)
37commonName_max			= 64
38
39emailAddress			= Email Address
40emailAddress_max		= 64
41
42[ req_attributes ]
43challengePassword		= A challenge password
44challengePassword_min		= 4
45challengePassword_max		= 20
46
47unstructuredName		= An optional company name
48
49[ x509v3_extensions ]
50
51nsCaRevocationUrl		= http://www.cryptsoft.com/ca-crl.pem
52nsComment			= "This is a comment"
53
54# under ASN.1, the 0 bit would be encoded as 80
55nsCertType			= 0x40
56
57#nsBaseUrl
58#nsRevocationUrl
59#nsRenewalUrl
60#nsCaPolicyUrl
61#nsSslServerName
62#nsCertSequence
63#nsCertExt
64#nsDataType
65
66