--- openssl-0.9.8a/apps/CA.pl.in 2005-07-04 23:44:22.000000000 +0200
+++ openssl-0.9.8a/apps/CA.pl.in 2009-04-21 16:08:45.354925289 +0200
@@ -53,7 +53,7 @@
$X509="$openssl x509";
$PKCS12="$openssl pkcs12";
-$CATOP="./demoCA";
+$CATOP="/etc/openssl";
$CAKEY="cakey.pem";
$CAREQ="careq.pem";
$CACERT="cacert.pem";
--- openssl-0.9.8a/apps/openssl.cnf 2005-09-16 14:20:24.000000000 +0200
+++ openssl-0.9.8a/apps/openssl.cnf 2009-04-21 16:07:13.910980196 +0200
@@ -39,7 +39,7 @@
####################################################################
[ CA_default ]
-dir = ./demoCA # Where everything is kept
+dir = /etc/openssl # Where everything is kept
certs = $dir/certs # Where the issued certs are kept
crl_dir = $dir/crl # Where the issued crl are kept
database = $dir/index.txt # database index file.
@@ -49,7 +49,7 @@
certificate = $dir/cacert.pem # The CA certificate
serial = $dir/serial # The current serial number
-crlnumber = $dir/crlnumber # the current crl number
+#crlnumber = $dir/crlnumber # the current crl number
# must be commented out to leave a V1 CRL
crl = $dir/crl.pem # The current CRL
private_key = $dir/private/cakey.pem# The private key
@@ -126,17 +126,17 @@
[ req_distinguished_name ]
countryName = Country Name (2 letter code)
-countryName_default = AU
+#countryName_default = US
countryName_min = 2
countryName_max = 2
stateOrProvinceName = State or Province Name (full name)
-stateOrProvinceName_default = Some-State
+#stateOrProvinceName_default = Some-State
localityName = Locality Name (eg, city)
0.organizationName = Organization Name (eg, company)
-0.organizationName_default = Internet Widgits Pty Ltd
+#0.organizationName_default = Unconfigured OpenSSL Installation
# we can do this but it is not needed normally :-)
#1.organizationName = Second Organization Name (eg, company)