From 15b6f9859a2906024f27090ea35ca1991af996f6 Mon Sep 17 00:00:00 2001 From: "Endi S. Dewata" Date: Thu, 9 Jun 2016 08:05:33 +0200 Subject: Updated deployment configs. --- scripts/ca.cfg | 24 +++++++++++++++++++++--- scripts/kra.cfg | 28 ++++++++++++++++++++++++---- scripts/ocsp.cfg | 12 +++++++++++- scripts/tks.cfg | 18 +++++++++++++++--- scripts/tps.cfg | 15 +++++++++++++-- 5 files changed, 84 insertions(+), 13 deletions(-) diff --git a/scripts/ca.cfg b/scripts/ca.cfg index 5fe922d..cb70973 100644 --- a/scripts/ca.cfg +++ b/scripts/ca.cfg @@ -4,14 +4,32 @@ pki_admin_name=caadmin pki_admin_nickname=caadmin pki_admin_password=Secret123 pki_admin_uid=caadmin -pki_backup_keys=True -pki_backup_password=Secret123 + +#pki_backup_keys=True +#pki_backup_password=Secret123 + pki_client_database_password=Secret123 pki_client_database_purge=False pki_client_pkcs12_password=Secret123 + +#pki_ds_ldaps_port=636 +#pki_ds_secure_connection=True +#pki_ds_secure_connection_ca_nickname=Directory Server CA certificate +#pki_ds_secure_connection_ca_pem_file=dsca.pem + pki_ds_base_dn=dc=ca,dc=example,dc=com -pki_ds_database=ca pki_ds_password=Secret123 +pki_ds_database=ca +#pki_ds_database=userRoot +#pki_ds_create_new_db=False +#pki_ds_remove_data=True + pki_security_domain_name=EXAMPLE pki_token_password=Secret123 +#pki_ds_secure_connection=True +#pki_ds_secure_connection_ca_nickname=Directory Server CA certificate +#pki_ds_secure_connection_ca_pem_file=/root/dsca.pem + +#pki_server_pkcs12_path=pki-server.p12 +#pki_server_pkcs12_password=Secret123 diff --git a/scripts/kra.cfg b/scripts/kra.cfg index bceb2ff..ca1df6d 100644 --- a/scripts/kra.cfg +++ b/scripts/kra.cfg @@ -1,19 +1,39 @@ [KRA] pki_admin_cert_file=/root/.dogtag/pki-tomcat/ca_admin.cert +#pki_import_admin_cert=False +#pki_import_admin_pkcs12_file=/root/.dogtag/pki-tomcat/ca_admin_cert.p12 +#pki_import_admin_pkcs12_password=Secret123 +#pki_import_admin_pkcs12_nickname=caadmin + pki_admin_email=kraadmin@example.com pki_admin_name=kraadmin pki_admin_nickname=kraadmin pki_admin_password=Secret123 pki_admin_uid=kraadmin -pki_backup_password=Secret123 + +#pki_backup_keys=True +#pki_backup_password=Secret123 + pki_client_database_password=Secret123 -pki_client_database_purge=False pki_client_pkcs12_password=Secret123 -pki_clone_pkcs12_password=Secret123 +#pki_client_database_purge=False + +#pki_clone_pkcs12_password=Secret123 + +#pki_ds_ldaps_port=636 +#pki_ds_secure_connection=True +#pki_ds_secure_connection_ca_nickname=Directory Server CA certificate +#pki_ds_secure_connection_ca_pem_file=dsca.pem pki_ds_base_dn=dc=kra,dc=example,dc=com -pki_ds_database=kra pki_ds_password=Secret123 +pki_ds_database=kra +#pki_ds_database=userRoot +#pki_ds_create_new_db=False +#pki_ds_remove_data=True + + pki_security_domain_name=EXAMPLE pki_security_domain_user=caadmin pki_security_domain_password=Secret123 pki_token_password=Secret123 +#pki_share_db=False diff --git a/scripts/ocsp.cfg b/scripts/ocsp.cfg index 4c7163f..f0c1218 100644 --- a/scripts/ocsp.cfg +++ b/scripts/ocsp.cfg @@ -5,15 +5,25 @@ pki_admin_name=ocspadmin pki_admin_nickname=ocspadmin pki_admin_password=Secret123 pki_admin_uid=ocspadmin + +pki_backup_keys=True pki_backup_password=Secret123 + pki_client_database_password=Secret123 pki_client_database_purge=False pki_client_pkcs12_password=Secret123 -pki_clone_pkcs12_password=Secret123 + pki_ds_base_dn=dc=ocsp,dc=example,dc=com pki_ds_database=ocsp pki_ds_password=Secret123 + +pki_clone_pkcs12_password=Secret123 + pki_security_domain_name=EXAMPLE pki_security_domain_user=caadmin pki_security_domain_password=Secret123 + pki_token_password=Secret123 + +#pki_profiles_in_ldap=False +#pki_share_db=False diff --git a/scripts/tks.cfg b/scripts/tks.cfg index 8154f1f..7fd4faa 100644 --- a/scripts/tks.cfg +++ b/scripts/tks.cfg @@ -5,15 +5,27 @@ pki_admin_name=tksadmin pki_admin_nickname=tksadmin pki_admin_password=Secret123 pki_admin_uid=tksadmin + +pki_backup_keys=True pki_backup_password=Secret123 -pki_ds_base_dn=dc=tks,dc=example,dc=com -pki_ds_database=tks + pki_client_database_password=Secret123 pki_client_database_purge=False pki_client_pkcs12_password=Secret123 -pki_clone_pkcs12_password=Secret123 + +pki_ds_base_dn=dc=tks,dc=example,dc=com +pki_ds_database=tks pki_ds_password=Secret123 +#pki_ds_database=userRoot +#pki_ds_create_new_db=False + +pki_clone_pkcs12_password=Secret123 + pki_security_domain_name=EXAMPLE pki_security_domain_user=caadmin pki_security_domain_password=Secret123 + pki_token_password=Secret123 + +#pki_profiles_in_ldap=False +#pki_share_db=False diff --git a/scripts/tps.cfg b/scripts/tps.cfg index c1ccf70..438bec5 100644 --- a/scripts/tps.cfg +++ b/scripts/tps.cfg @@ -5,18 +5,29 @@ pki_admin_name=tpsadmin pki_admin_nickname=tpsadmin pki_admin_password=Secret123 pki_admin_uid=tpsadmin + pki_backup_password=Secret123 + pki_ds_base_dn=dc=tps,dc=example,dc=com pki_ds_database=tps +pki_ds_password=Secret123 +#pki_ds_database=userRoot +#pki_ds_create_new_db=False + pki_client_database_password=Secret123 pki_client_database_purge=False pki_client_pkcs12_password=Secret123 pki_clone_pkcs12_password=Secret123 -pki_ds_password=Secret123 + pki_security_domain_name=EXAMPLE pki_security_domain_user=caadmin pki_security_domain_password=Secret123 + pki_token_password=Secret123 -pki_authdb_basedn=dc=ca,dc=example,dc=com + +pki_authdb_basedn=dc=example,dc=com pki_authdb_port=389 pki_enable_server_side_keygen=True + +#pki_profiles_in_ldap=False +#pki_share_db=False -- cgit