openvpn/sample/sample-keys
Steffan Karger a64d76e246 Add a revoked cert to the sample keys
Allows for easier testing of the revocation functionality.

Signed-off-by: Steffan Karger <steffan@karger.me>
Acked-by: Arne Schwabe <arne@rfc2549.org>
Message-Id: <1477510159-5067-1-git-send-email-steffan@karger.me>
URL: https://www.mail-archive.com/openvpn-devel@lists.sourceforge.net/msg12784.html
Signed-off-by: David Sommerseth <davids@openvpn.net>
2016-10-28 14:42:46 +02:00
..
.gitignore Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
ca.crt Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
ca.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client-ec.crt Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client-ec.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client-pass.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client.crt Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
client.p12 Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
dh2048.pem Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
gen-sample-keys.sh Add a revoked cert to the sample keys 2016-10-28 14:42:46 +02:00
openssl.cnf Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
README Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
server-ec.crt Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
server-ec.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
server.crt Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
server.key Modernize sample keys and sample configs 2014-11-15 17:45:10 +01:00
ta.key Use tls-auth in sample config files 2015-02-22 17:19:23 +01:00

Sample RSA and EC keys.

Run ./gen-sample-keys.sh to generate fresh test keys.

See the examples section of the man page for usage examples.

NOTE: THESE KEYS ARE FOR TESTING PURPOSES ONLY.
      DON'T USE THEM FOR ANY REAL WORK BECAUSE
      THEY ARE TOTALLY INSECURE!

ca.{crt,key}        -- sample CA key/cert
server.{crt,key}    -- sample server key/cert
client.{crt,key}    -- sample client key/cert
client-pass.key     -- sample client key with password-encrypted key
                       password = "password"
client.p12          -- sample client pkcs12 bundle
                       password = "password"
client-ec.{crt,key} -- sample elliptic curve client key/cert
server-ec.{crt,key} -- sample elliptic curve server key/cert