# CAcert Ceremony config file (c) CAcert Inc. 2008 see licence testCert=false #crypto algo provider=BC sigName=SHA1withRSA keyName=RSA # keysizes rootkpsize=4096 intermkpsize=4096 endkpsize=2048 # lifespan of certs rootlife=10957 # = 30*365+7 days intermlife=3653 # = 10*365+3 days endlife=365 # Policy details disclaimer=Non Related Persons Disclaimer and License policyURL=http://go.cacert.org/use relianceURL=http://go.cacert.org/cca disclaimerFull=Non Related Persons Disclaimer and License :\ You may USE under http://go.cacert.org/use but you may not RELY. For RELIANCE, see http://go.cacert.org/cca ocspURL=http://ocsp.cacert.org # PG says OCSP should be working for both OLD roots and NEW roots, so we keep the same URL orgName= # "CAcert Inc." policyOID=2.5.29.32.0 #Any Policy. CAcert policy : "1.3.6.1.4.1.18506"; # Cert names O=CAcert.org - Community Certification Authority OU=Permission to USE under http://go.cacert.org/use rCN=CAcert.org sbr1CN=Community Member - CAcert.org sbr3CN=Community Assured Member - CAcert.org sbe1CN=Community Member - CAcert.org sbe3CN=Community Assured Member - CAcert.org #End user cert data eCN=Test Certificate eO=CAcert.org eOU=CAcert Consulting Dept ecrt=eec.pem ekey=eeckey.pem ep12=id.p12 epasswd=cacert efriendlyname=test_cert # Root cert data rootcrt=root.crt rkey=root.key rkeyclear=root.key.clear rpass=root.pass rpassp12=root.pass.base64 rid=02 rp12=root.p12 # Subroot 1 cert data = old class 1 subr1crt=subroot1.crt subr1key=subroot1.key subr1keyclear=subroot1.key.clear subr1pass=subroot1.pass subr1passp12=subroot1.pass.base64 subr1id=03 subr1p12=subroot1.p12 # Subroot 2 cert data = old class 3 subr3crt=subroot3.crt subr3key=subroot3.key subr3keyclear=subroot3.key.clear subr3pass=subroot3.pass subr3passp12=subroot3.pass.base64 subr3id=04 subr3p12=subroot3.p12 # Subroot 3 cert data = old class 1 sube1crt=subrootExtra1.crt sube1key=subrootExtra1.key sube1keyclear=subrootExtra1.key.clear sube1pass=subrootExtra1.pass sube1passp12=subrootExtra1.pass.base64 sube1id=05 sube1p12=subrootExtra1.p12 # Subroot 4 cert data = old class 3 sube3crt=subrootExtra3.crt sube3key=subrootExtra3.key sube3keyclear=subrootExtra3.key.clear sube3pass=subrootExtra3.pass sube3passp12=subrootExtra3.pass.base64 sube3id=06 sube3p12=subrootExtra3.p12 # directories to load/store files crtdir=signingengine keydir=keys