1# 2# SSLeay example configuration file. 3# This is mostly being used for generation of certificate requests. 4# 5 6RANDFILE = /dev/arandom 7 8#################################################################### 9[ req ] 10default_bits = 1024 11default_keyfile = privkey.pem 12distinguished_name = req_distinguished_name 13attributes = req_attributes 14 15[ req_distinguished_name ] 16countryName = Country Name (2 letter code) 17#countryName_default = AU 18countryName_min = 2 19countryName_max = 2 20 21stateOrProvinceName = State or Province Name (full name) 22#stateOrProvinceName_default = Some-State 23 24localityName = Locality Name (eg, city) 25 260.organizationName = Organization Name (eg, company) 27#0.organizationName_default = Internet Widgits Pty Ltd 28 29# we can do this but it is not needed normally :-) 30#1.organizationName = Second Organization Name (eg, company) 31#1.organizationName_default = CryptSoft Pty Ltd 32 33organizationalUnitName = Organizational Unit Name (eg, section) 34#organizationalUnitName_default = 35 36commonName = Common Name (eg, fully qualified host name) 37commonName_max = 64 38 39emailAddress = Email Address 40emailAddress_max = 64 41 42[ req_attributes ] 43challengePassword = A challenge password 44challengePassword_min = 4 45challengePassword_max = 20 46 47unstructuredName = An optional company name 48 49[ x509v3_extensions ] 50 51nsCaRevocationUrl = http://www.cryptsoft.com/ca-crl.pem 52nsComment = "This is a comment" 53 54# under ASN.1, the 0 bit would be encoded as 80 55nsCertType = 0x40 56 57#nsBaseUrl 58#nsRevocationUrl 59#nsRenewalUrl 60#nsCaPolicyUrl 61#nsSslServerName 62#nsCertSequence 63#nsCertExt 64#nsDataType 65 66