default_bits=2048/*生成证书请求时用到的私钥的密钥长度*/default_md= sha1/*证书请求签名时的单向加密算法*/default_keyfile= privkey.pem/*默认新创建的私钥存放位置,*//*如-new选项没指定-key时会自动创建私钥*//*-newkey选项也会自动创建私钥*/distinguished_name= req_distinguished_name/*可识别的字段...
default_bits = 2048 default_keyfile = /var/MyCA/private/cakey.pem default_md = sha256 prompt = no distinguished_name = root_ca_distinguished_name x509_extensions = root_ca_extensions [ root_ca_distinguished_name ] commonName = My Test CA # 名称 stateOrProvinceName = BJ # 州或省代码 co...
# 签名默认使用的信息摘要算法,可以使用:md5,sha1,mdc2,md2 default_md = md5 # 为一些字段设置默认的字符串类型,比如证书请求中的城市和组织名称。可能的取值和解释如下: # default: 包含了 PrintableString, T61String, BMPString 三种类型 # pkix : 包含了 PrintableString, BMPString 两种类型 # utf8only: ...
default_days = 365 # how long to certify for default_crl_days= 30 # how long before next CRL default_md = default # use public key default MD preserve = no # keep passed DN ordering # A few difference way of specifying how similar the request should look # For type CA, the listed...
default_md=default# usepublickeydefaultMD preserve=no # keep passed DN ordering # A few difference way of specifying how similar the request should look # For type CA, the listed attributes must be the same, and the optional # and supplied fields are just that :-) ...
default_md 同命令行的-md意义相同.(mandatory) database 记得index.txt是什么文件吗?不记得自己往前找。这个key就是指定index.txt的。初始化是空文件。 serialfile 意义同-extensions相同。 意义同-msie_hack相同。 意义同-policy相同。自己看看这一块是怎么回事。(mandatory) ...
default_md = sha256 policy = myca_policy x509_extensions = certificate_extensions [ myca_policy ] commonName = supplied stateOrProvinceName = supplied countryName = supplied emailAddress = supplied organizationName= supplied organizationalUnitName = optional ...
pem default_md = sha256 prompt = no distinguished_name = root_ca_distinguished_name x509_extensions = root_ca_extensions [ root_ca_distinguished_name ] commonName = My Test CA # 名称 stateOrProvinceName = BJ # 州或省代码 countryName = CN # 国家代码 emailAddress = test@cert.com # ...
常用选项有:[-md5|-md4|-md2|-sha1|-sha|-mdc2|-ripemd160|-dss1]:指定一种摘要算法-out filename:将摘要的内容保存到指定文件中 帮助:man dgst 示例如下: 单向加密除了 openssl dgst 工具还有: md5sum,sha1sum,sha224sum,sha256sum ,sha384sum,sha512sum示例如下: ...
default_md = sha256 # use SHA-256 by default preserve = no # keep passed DN ordering # A few difference way of specifying how similar the request should look # For type CA, the listed attributes must be the same, and the optional ...