summaryrefslogtreecommitdiffstats
path: root/etc/ssl
Commit message (Collapse)AuthorAgeFilesLines
* Add IPsec IKE Intermediate EKU to server certificates. The serverAuth EKU ↵Chris Buechler2015-07-201-2/+2
| | | | already added suffices for Windows clients, though strongswan docs suggest setting this as well.
* Specify keyUsage and extendedKeyUsage in openssl.cnf, use crl_ext.Chris Buechler2015-07-201-6/+6
|
* cherry pic from 'hotfix/3347-Certificate_Authority_SAN_names_not_working':yarick1232014-08-141-0/+33
| | | | | | | | bugfix #3347: Certificate Authority SAN names not working in 2.1 subjectAltName can be set _only_ via configuration file - created three extra sections in openssl.cnf to use in case of existing subjectAltName. Unfortunately it is not possible to assign empty value to subjectAltName in openssl.cnf
* default openssl to 2048Chris Buechler2014-03-061-1/+1
|
* When creating an internal certificate, offer the user a choice of what ↵jim-p2011-11-091-1/+12
| | | | constraints to place upon the certificate (CA, Server, or User).
* Create certificate for HTTP Server optionScott Ullrich2004-11-171-0/+265
OpenPOWER on IntegriCloud