]>
Commit | Line | Data |
---|---|---|
694bfd6f MC |
1 | [Version]\r |
2 | Signature="$Windows NT$\r | |
3 | ;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;\r | |
4 | ; 2.5.29.19 == Basic Constraints for CA\r | |
5 | [Strings]\r | |
6 | szOID_BASIC_CONSTRAINTS2 = "2.5.29.19"\r | |
7 | \r | |
8 | [EnhancedKeyUsageExtension]\r | |
9 | OID = 1.3.6.1.4.1.311.76.9.21.1\r | |
10 | \r | |
11 | [NewRequest]\r | |
12 | Subject = "CN=TestEKUParsingIssuingCA"\r | |
13 | Exportable = true\r | |
14 | KeyLength = 256\r | |
15 | HashAlgorithm = sha256\r | |
16 | KeyUsage = "CERT_KEY_CERT_SIGN_KEY_USAGE"\r | |
17 | KeyUsageProperty = "NCRYPT_ALLOW_SIGNING_FLAG"\r | |
18 | MachineKeySet = True\r | |
19 | RequestType = cert\r | |
20 | ValidityPeriodUnits = 20\r | |
21 | ValidityPeriod = Years\r | |
22 | ProviderName = "Microsoft Software Key Storage Provider"\r | |
23 | KeyAlgorithm = "ECDSA_P256"\r | |
24 | \r | |
25 | \r | |
26 | [Extensions]\r | |
27 | %szOID_BASIC_CONSTRAINTS2% = "{text}"\r | |
28 | _continue_ = "ca=True"\r | |
29 | \r | |
30 | Critical=%szOID_BASIC_CONSTRAINTS2%\r | |
31 | \r | |
32 | ;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;\r | |
33 | ; This extension is so the this CA is only allowed to\r | |
34 | ; issue end-entity certs.\r | |
35 | ;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;\r | |
36 | [BasicConstraintsExtension]\r | |
37 | PathLength=0\r | |
38 | \r | |
39 | ;\r | |
40 | ; Surface Firmware Signing EKU\r | |
41 | ;\r | |
42 | [Extensions]\r | |
43 | 2.5.29.37 = "{text}"\r | |
44 | _continue_ = "1.3.6.1.4.1.311.76.9.21.1"\r | |
45 | \r |