From: Julien Moutinho Date: Tue, 19 Mar 2013 10:58:56 +0000 (+0100) Subject: Correction : etc/openssl : oubli d'ôter git/ . X-Git-Url: https://git.cyclocoop.org/?p=lhc%2Fateliers.git;a=commitdiff_plain;h=3625e83f4e0aaa532148ce607e3cfc53ba8b4b3c Correction : etc/openssl : oubli d'ôter git/ . --- diff --git a/etc/openssl/heureux-cyclage.org/git/ca b/etc/openssl/heureux-cyclage.org/git/ca deleted file mode 120000 index a96aa0e..0000000 --- a/etc/openssl/heureux-cyclage.org/git/ca +++ /dev/null @@ -1 +0,0 @@ -.. \ No newline at end of file diff --git a/etc/openssl/heureux-cyclage.org/git/host.cfg b/etc/openssl/heureux-cyclage.org/git/host.cfg deleted file mode 100644 index c364200..0000000 --- a/etc/openssl/heureux-cyclage.org/git/host.cfg +++ /dev/null @@ -1,70 +0,0 @@ - SERVICE = git - RANDFILE = var/sec/x509/openssl.rand - oid_section = extra_oids -[ extra_oids ] - # NOTE: pour une éventuelle validation étendue (Extended Validation (EV)) - jurisdictionOfIncorporationLocalityName = 1.3.6.1.4.1.311.60.2.1.1 - jurisdictionOfIncorporationStateOrProvinceName = 1.3.6.1.4.1.311.60.2.1.2 - jurisdictionOfIncorporationCountryName = 1.3.6.1.4.1.311.60.2.1.3 -[ req ] - prompt = no - distinguished_name = distinguished_name - string_mask = pkix - #x509_extensions = root_extensions - #req_extensions = extension - #attributes = req_attributes -[ distinguished_name ] - countryName = $ENV::x509_country - stateOrProvinceName = $ENV::x509_state_or_province - localityName = $ENV::x509_state_or_province - 0.organizationName = $ENV::x509_organization - organizationalUnitName = Service Git - commonName = $SERVICE.$ENV::x509_host - businessCategory = $ENV::x509_business_category - jurisdictionOfIncorporationLocalityName = $ENV::x509_state_or_province - jurisdictionOfIncorporationStateOrProvinceName = $ENV::x509_state_or_province - jurisdictionOfIncorporationCountryName = $ENV::x509_country -[ extensions ] - basicConstraints = critical,CA:TRUE,pathlen:0 - keyUsage = keyCertSign,cRLSign,digitalSignature,keyEncipherment - subjectAltName = email:contact+$SERVICE@$ENV::x509_host,DNS:$SERVICE.$ENV::x509_host,DNS:$ENV::x509_host - subjectKeyIdentifier = hash - issuerAltName = issuer:copy - authorityKeyIdentifier = keyid:always,issuer:always - authorityInfoAccess = caIssuers;URI:http://www.$ENV::x509_host/x509/crt.pem - crlDistributionPoints = URI:http://www.$ENV::x509_host/x509/$SERVICE/crl.pem - certificatePolicies = @certificate_policies -[ self_signed_extensions ] - basicConstraints = critical,CA:TRUE,pathlen:0 - keyUsage = keyCertSign,cRLSign,digitalSignature,keyEncipherment - subjectAltName = email:contact+$SERVICE@$ENV::x509_host,DNS:$SERVICE.$ENV::x509_host,DNS:$ENV::x509_host - subjectKeyIdentifier = hash - issuerAltName = issuer:copy - authorityKeyIdentifier = keyid:always,issuer:always - authorityInfoAccess = caIssuers;URI:http://www.$ENV::x509_host/x509/$SERVICE/crt.pem - crlDistributionPoints = URI:http://www.$ENV::x509_host/x509/$SERVICE/crl.pem -[ user_extensions ] - basicConstraints = critical,CA:FALSE,pathlen:0 - keyUsage = digitalSignature,keyEncipherment - subjectAltName = email:$ENV::user@$ENV::x509_host - subjectKeyIdentifier = hash - issuerAltName = issuer:copy - authorityKeyIdentifier = keyid:always,issuer:always - authorityInfoAccess = caIssuers;URI:http://www.$ENV::x509_host/x509/$SERVICE/crt.pem -[ certificate_policies ] - policyIdentifier = 1.2.250.1.42 - CPS.1 = https://www.$ENV::x509_host/x509/cps -[ ca ] - private_key = var/sec/x509/$ENV::x509/key.pem - dir = var/pub/x509/$ENV::x509 - crl_dir = $dir - crlnumber = $dir/crl.num - crl = $dir/crl.pem - database = $dir/idx.txt -[ self_signed_ca ] - private_key = var/sec/x509/$ENV::x509/key.pem - dir = var/pub/x509/$ENV::x509 - crl_dir = $dir - crlnumber = $dir/crl.self-signed.num - crl = $dir/crl.self-signed.pem - database = $dir/idx.self-signed.txt diff --git a/etc/openssl/heureux-cyclage.org/git/user.cfg b/etc/openssl/heureux-cyclage.org/git/user.cfg deleted file mode 100644 index d71f59b..0000000 --- a/etc/openssl/heureux-cyclage.org/git/user.cfg +++ /dev/null @@ -1,14 +0,0 @@ - SERVICE = git - HOME = . - RANDFILE = var/sec/x509/openssl.rand -[ req ] - prompt = no - distinguished_name = user_distinguished_name - string_mask = pkix -[ user_distinguished_name ] - countryName = $ENV::COUNTRY - stateOrProvinceName = $ENV::STATE_OR_PROVINCE - #localityName = - 0.organizationName = $ENV::ORGANIZATION - organizationalUnitName = Certificat utilisateurice du service Git - commonName = $ENV::USER