[corat-coret] mikrotik certificate untuk ovpn server

  • 0
/certificate add name=ca country="ID" state="ID" locality="[locality]" organization="[organization]" unit="[unit]" common-name="ca" key-size=4096 days-valid=3650 key-usage=crl-sign,key-cert-sign
/certificate sign ca ca-crl-host=127.0.0.1 name="ca"

/certificate add name=server country="ID" state="ID" locality="[locality]" organization="[organization]" unit="[unit]" common-name="server" key-size=4096 days-valid=3650 key-usage=digital-signature,key-encipherment,tls-server
/certificate sign server ca="ca" name="server"

/certificate add name=client-template country="ID" state="ID" locality="[locality]" organization="[organization]" unit="[unit]" common-name="client-template" key-size=4096 days-valid=3650 key-usage=tls-client
/certificate sign client-template ca="ca" name="client-template"

/certificate add name=client-enduser copy-from="client-template" common-name="client-enduser"
/certificate sign client-enduser ca="ca" name="client-enduser"

/certificate export-certificate ca export-passphrase=""
/certificate export-certificate client-enduser export-passphrase=[passphrase]

Tidak ada komentar :

Posting Komentar