glusterfs
1[ req ]
2distinguished_name = req_distinguished_name
3x509_extensions = v3_ca
4[ req_distinguished_name ]
5commonName = Common Name
6commonName_max = 64
7[ v3_ca ]
8subjectKeyIdentifier = hash
9authorityKeyIdentifier = keyid:always,issuer:always
10basicConstraints = CA:true
11[ ca ]
12default_ca = CA_default
13[ CA_default ]
14dir = @TMPDIR@
15certs = $dir/certs
16crl_dir = $dir/crl
17database = $dir/index.txt
18unique_subjecta = no
19new_certs_dir = $dir/newcerts
20certificate = $dir/ca.crt
21serial = $dir/serial
22crl = $dir/crl.pem
23private_key = $dir/self.key
24x509_extensions = usr_cert
25name_opt = ca_default
26cert_opt = ca_default
27default_days = 365
28default_crl_days = 30
29crl_extensions = crl_ext
30default_md = sha256
31preserve = no
32policy = policy_test
33[ policy_test ]
34commonName = supplied
35[ usr_cert ]
36basicConstraints = CA:FALSE
37subjectKeyIdentifier = hash
38authorityKeyIdentifier = keyid,issuer:always
39crlDistributionPoints = URI:file://@TMPDIR@/crl.pem
40[ crl_ext ]
41authorityKeyIdentifier = keyid:always,issuer:always
42