Commit a3da0300 authored by Leigh B. Stoller's avatar Leigh B. Stoller

Turn off unique subject so that we can multiple certs for the same DN.

parent 9b2aaf5d
...@@ -26,7 +26,6 @@ serial = $dir/serial # The current serial number ...@@ -26,7 +26,6 @@ serial = $dir/serial # The current serial number
crl = $dir/crl.pem # The current CRL crl = $dir/crl.pem # The current CRL
private_key = $dir/cakey.pem # The private key private_key = $dir/cakey.pem # The private key
RANDFILE = $dir/.rand # private random number file RANDFILE = $dir/.rand # private random number file
x509_extensions = usr_cert # The extentions to add to the cert x509_extensions = usr_cert # The extentions to add to the cert
# Extensions to add to a CRL. Note: Netscape communicator chokes on V2 CRLs # Extensions to add to a CRL. Note: Netscape communicator chokes on V2 CRLs
...@@ -69,6 +68,7 @@ default_days = 2000 # how long to certify for ...@@ -69,6 +68,7 @@ default_days = 2000 # how long to certify for
default_crl_days= 2000 # how long before next CRL default_crl_days= 2000 # how long before next CRL
default_md = md5 # which md to use. default_md = md5 # which md to use.
preserve = no # keep passed DN ordering preserve = no # keep passed DN ordering
unique_subject = no
# A few difference way of specifying how similar the request should look # A few difference way of specifying how similar the request should look
# For type CA, the listed attributes must be the same, and the optional # For type CA, the listed attributes must be the same, and the optional
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment