certs/localhost.cnf
author Matthew Wild <mwild1@gmail.com>
Tue, 24 Mar 2015 16:03:37 +0000
changeset 6603 b1c84d220c40
parent 5924 f44c1dabd4e9
child 7362 a5a080c12c96
child 7695 90ddd53cbe08
permissions -rw-r--r--
mod_s2s: to/from attributes are required on s2s stream headers. Set them to '' when not available. Fixes #468.

[v3_extensions]
extendedKeyUsage = serverAuth,clientAuth
keyUsage = digitalSignature,keyEncipherment
basicConstraints = CA:FALSE
subjectAltName = @subject_alternative_name

[subject_alternative_name]
DNS.0 = localhost
otherName.0 = 1.3.6.1.5.5.7.8.7;IA5STRING:_xmpp-client.localhost
otherName.1 = 1.3.6.1.5.5.7.8.7;IA5STRING:_xmpp-server.localhost
otherName.2 = 1.3.6.1.5.5.7.8.5;FORMAT:UTF8,UTF8:localhost

[distinguished_name]
countryName = GB
organizationName = Prosody IM
organizationalUnitName = http://prosody.im/doc/certificates
commonName = Example certificate

[req]
prompt = no
x509_extensions = v3_extensions
req_extensions = v3_extensions
distinguished_name = distinguished_name