certificate.profiles¶
Returns a dictionary of predefined configuration options for creating certificates.
Type: object
No Additional Properties
Type: array
No Additional Items
No Additional Items
CertProfilesModel
Type: objectDefault:
{
"HTTPS RSA Certificate": {
"cert_extensions": {
"AuthorityKeyIdentifier": {
"authority_cert_issuer": true,
"enabled": true,
"extension_critical": false
},
"BasicConstraints": {
"ca": false,
"enabled": true,
"extension_critical": true
},
"ExtendedKeyUsage": {
"enabled": true,
"extension_critical": true,
"usages": [
"SERVER_AUTH",
"CLIENT_AUTH"
]
},
"KeyUsage": {
"digital_signature": true,
"enabled": true,
"extension_critical": true,
"key_agreement": true,
"key_encipherment": true
}
},
"digest_algorithm": "SHA256",
"key_length": 2048,
"key_type": "RSA",
"lifetime": 397
},
"HTTPS ECC Certificate": {
"cert_extensions": {
"AuthorityKeyIdentifier": {
"authority_cert_issuer": true,
"enabled": true,
"extension_critical": false
},
"BasicConstraints": {
"ca": false,
"enabled": true,
"extension_critical": true
},
"ExtendedKeyUsage": {
"enabled": true,
"extension_critical": true,
"usages": [
"SERVER_AUTH",
"CLIENT_AUTH"
]
},
"KeyUsage": {
"digital_signature": true,
"enabled": true,
"extension_critical": true
}
},
"digest_algorithm": "SHA256",
"ec_curve": "SECP384R1",
"key_type": "EC",
"lifetime": 397
}
}
No Additional Properties
Type: object
Type: object
Required roles: CERTIFICATE_READ