Displaying 4 results from an estimated 4 matches for "default_ca".
2016 Apr 19
2
VPN suggestions centos 6, 7
...y certificate, not the CA's, unless I'm wrong. I checked
>>the server and really think that the certificates are in the right place.
>
>Here's how I managed that in my openssl.cnf file. Lots of bits
>ellided for clarity's sake:
>
>### start ###
>[ ca ]
>default_ca = CA_default
>
>[ CA_default ]
>x509_extensions = server_cert
>
>[ server_cert ]
>basicConstraints=CA:FALSE
>keyUsage = nonRepudiation, dataEncipherment, digitalSignature, keyEncipherment
>extendedKeyUsage = serverAuth, clientAuth
>nsCertType = server, client
>### end...
2016 Apr 18
2
VPN suggestions centos 6, 7
>
>
>Folks
>
>I would like to have my windows 7 laptop communicate with my home
>server via a VPN, in such a way that it appears to be "inside" my
>home network. It should not only let me appear to be at home for
>any external query, but also let me access my computers inside my home.
>
>I already have this working using M$'s PPTP using my home
2016 Apr 18
0
VPN suggestions centos 6, 7
...hould be in the end-entity
> certificate, not the CA's, unless I'm wrong. I checked the server and really
> think that the certificates are in the right place.
Here's how I managed that in my openssl.cnf file. Lots of bits ellided
for clarity's sake:
### start ###
[ ca ]
default_ca = CA_default
[ CA_default ]
x509_extensions = server_cert
[ server_cert ]
basicConstraints=CA:FALSE
keyUsage = nonRepudiation, dataEncipherment, digitalSignature, keyEncipherment
extendedKeyUsage = serverAuth, clientAuth
nsCertType = server, client
### end ###
I think the nsCertType directive ma...
2016 Apr 19
0
VPN suggestions centos 6, 7
...'m wrong. I checked the server and really think that the certificates
>> > are in the right place.
>>
>> Here's how I managed that in my openssl.cnf file. Lots of bits ellided for
>> clarity's sake:
>>
>> ### start ###
>> [ ca ]
>> default_ca = CA_default
>>
>> [ CA_default ]
>> x509_extensions = server_cert
>>
>> [ server_cert ]
>> basicConstraints=CA:FALSE
>> keyUsage = nonRepudiation, dataEncipherment, digitalSignature,
>> keyEncipherment
>> extendedKeyUsage = serverAuth, clien...