path: root/ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf
diff options
authorParménides GV <>2014-11-05 16:51:16 +0100
committerParménides GV <>2014-11-05 16:51:16 +0100
commit6544b8d32ccf81a6c1d832217642b873be8dc6b7 (patch)
treeb07723b530e20b23ae83de822387f6551ea7f9f4 /ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf
parent713c3a98f53a6bd1ad94e90f28d3e37d20abfab9 (diff)
parent5304543ebd60778ad46123cd63142e27627fa150 (diff)
Merge branch 'bug/Android-5-Lollipop-VPN-fails-#6232' into develop
Diffstat (limited to 'ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf')
1 files changed, 76 insertions, 0 deletions
diff --git a/ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf b/ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf
new file mode 100644
index 00000000..77c01c30
--- /dev/null
+++ b/ics-openvpn-stripped/main/openssl/android.testssl/CAss.cnf
@@ -0,0 +1,76 @@
+# SSLeay example configuration file.
+# This is mostly being used for generation of certificate requests.
+RANDFILE = /sdcard/android.testssl/.rnd
+[ req ]
+default_bits = 2048
+default_keyfile = keySS.pem
+distinguished_name = req_distinguished_name
+encrypt_rsa_key = no
+default_md = sha1
+[ req_distinguished_name ]
+countryName = Country Name (2 letter code)
+countryName_default = AU
+countryName_value = AU
+organizationName = Organization Name (eg, company)
+organizationName_value = Dodgy Brothers
+commonName = Common Name (eg, YOUR name)
+commonName_value = Dodgy CA
+[ ca ]
+default_ca = CA_default # The default ca section
+[ CA_default ]
+dir = ./demoCA # Where everything is kept
+certs = $dir/certs # Where the issued certs are kept
+crl_dir = $dir/crl # Where the issued crl are kept
+database = $dir/index.txt # database index file.
+#unique_subject = no # Set to 'no' to allow creation of
+ # several ctificates with same subject.
+new_certs_dir = $dir/newcerts # default place for new certs.
+certificate = $dir/cacert.pem # The CA certificate
+serial = $dir/serial # The current serial number
+crl = $dir/crl.pem # The current CRL
+private_key = $dir/private/cakey.pem# The private key
+RANDFILE = $dir/private/.rand # private random number file
+x509_extensions = v3_ca # The extentions to add to the cert
+name_opt = ca_default # Subject Name options
+cert_opt = ca_default # Certificate field options
+default_days = 365 # how long to certify for
+default_crl_days= 30 # how long before next CRL
+default_md = md5 # which md to use.
+preserve = no # keep passed DN ordering
+policy = policy_anything
+[ policy_anything ]
+countryName = optional
+stateOrProvinceName = optional
+localityName = optional
+organizationName = optional
+organizationalUnitName = optional
+commonName = supplied
+emailAddress = optional
+[ v3_ca ]
+basicConstraints = CA:true,pathlen:1
+keyUsage = cRLSign, keyCertSign