moulinette/test/old_slapdtest/certs
2020-01-07 17:47:50 +08:00
..
ca.conf test_ldap... to be continued 2020-01-07 17:47:50 +08:00
ca.pem test_ldap... to be continued 2020-01-07 17:47:50 +08:00
client.conf test_ldap... to be continued 2020-01-07 17:47:50 +08:00
client.key test_ldap... to be continued 2020-01-07 17:47:50 +08:00
client.pem test_ldap... to be continued 2020-01-07 17:47:50 +08:00
gencerts.sh test_ldap... to be continued 2020-01-07 17:47:50 +08:00
gennssdb.sh test_ldap... to be continued 2020-01-07 17:47:50 +08:00
README test_ldap... to be continued 2020-01-07 17:47:50 +08:00
server.conf test_ldap... to be continued 2020-01-07 17:47:50 +08:00
server.key test_ldap... to be continued 2020-01-07 17:47:50 +08:00
server.pem test_ldap... to be continued 2020-01-07 17:47:50 +08:00

python-ldap test certificates
=============================

Certificates and keys
---------------------

* ``ca.pem``: internal root CA certificate
* ``server.pem``: TLS server certificate for slapd, signed by root CA. The
  server cert is valid for DNS Name ``localhost`` and IPs ``127.0.0.1`` and
  ``:1``.
* ``server.key``: private key for ``server.pem``, no password protection
* ``client.pem``: certificate for TLS client cert authentication, signed by
  root CA.
* ``client.key``: private key for ``client.pem``, no password protection

Configuration and scripts
-------------------------

* ``ca.conf`` contains the CA definition as well as extensions for the
  client and server certificates.
* ``client.conf`` and ``server.conf`` hold the subject and base configuration
  for server and client certs.
* ``gencerts.sh`` creates new CA, client and server certificates.
* ``gennssdb.sh`` can be used to create a NSSDB for all certs and keys.