|
|
|
|
@ -3,6 +3,13 @@
|
|
|
|
|
openssl_privatekey:
|
|
|
|
|
path: '{{ output_dir }}/ca_privatekey.pem'
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate CA privatekey with passphrase
|
|
|
|
|
openssl_privatekey:
|
|
|
|
|
path: '{{ output_dir }}/ca_privatekey_pw.pem'
|
|
|
|
|
passphrase: hunter2
|
|
|
|
|
cipher: auto
|
|
|
|
|
select_crypto_backend: cryptography
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate CA CSR
|
|
|
|
|
openssl_csr:
|
|
|
|
|
path: '{{ output_dir }}/ca_csr.csr'
|
|
|
|
|
@ -14,6 +21,18 @@
|
|
|
|
|
- 'CA:TRUE'
|
|
|
|
|
basic_constraints_critical: yes
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate CA CSR (privatekey passphrase)
|
|
|
|
|
openssl_csr:
|
|
|
|
|
path: '{{ output_dir }}/ca_csr_pw.csr'
|
|
|
|
|
privatekey_path: '{{ output_dir }}/ca_privatekey_pw.pem'
|
|
|
|
|
privatekey_passphrase: hunter2
|
|
|
|
|
subject:
|
|
|
|
|
commonName: Example CA
|
|
|
|
|
useCommonNameForSAN: no
|
|
|
|
|
basic_constraints:
|
|
|
|
|
- 'CA:TRUE'
|
|
|
|
|
basic_constraints_critical: yes
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate selfsigned CA certificate
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ca_cert.pem'
|
|
|
|
|
@ -23,6 +42,16 @@
|
|
|
|
|
selfsigned_digest: sha256
|
|
|
|
|
select_crypto_backend: '{{ select_crypto_backend }}'
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate selfsigned CA certificate (privatekey passphrase)
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ca_cert_pw.pem'
|
|
|
|
|
csr_path: '{{ output_dir }}/ca_csr_pw.csr'
|
|
|
|
|
privatekey_path: '{{ output_dir }}/ca_privatekey_pw.pem'
|
|
|
|
|
privatekey_passphrase: hunter2
|
|
|
|
|
provider: selfsigned
|
|
|
|
|
selfsigned_digest: sha256
|
|
|
|
|
select_crypto_backend: '{{ select_crypto_backend }}'
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate ownca certificate
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ownca_cert.pem'
|
|
|
|
|
@ -164,6 +193,18 @@
|
|
|
|
|
select_crypto_backend: '{{ select_crypto_backend }}'
|
|
|
|
|
register: ownca_certificate_ecc
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate selfsigned certificate (privatekey passphrase)
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ownca_cert_ecc_2.pem'
|
|
|
|
|
csr_path: '{{ output_dir }}/csr_ecc.csr'
|
|
|
|
|
ownca_path: '{{ output_dir }}/ca_cert_pw.pem'
|
|
|
|
|
ownca_privatekey_path: '{{ output_dir }}/ca_privatekey_pw.pem'
|
|
|
|
|
ownca_privatekey_passphrase: hunter2
|
|
|
|
|
provider: ownca
|
|
|
|
|
ownca_digest: sha256
|
|
|
|
|
select_crypto_backend: '{{ select_crypto_backend }}'
|
|
|
|
|
register: selfsigned_certificate_passphrase
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate ownca certificate (failed passphrase 1)
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ownca_cert_pw1.pem'
|
|
|
|
|
@ -179,7 +220,7 @@
|
|
|
|
|
|
|
|
|
|
- name: (OwnCA, {{select_crypto_backend}}) Generate ownca certificate (failed passphrase 2)
|
|
|
|
|
openssl_certificate:
|
|
|
|
|
path: '{{ output_dir }}/ownca_cert_pw1.pem'
|
|
|
|
|
path: '{{ output_dir }}/ownca_cert_pw2.pem'
|
|
|
|
|
csr_path: '{{ output_dir }}/csr_ecc.csr'
|
|
|
|
|
ownca_path: '{{ output_dir }}/ca_cert.pem'
|
|
|
|
|
ownca_privatekey_path: '{{ output_dir }}/privatekeypw.pem'
|
|
|
|
|
|