basicConstraints
|
|
changed
|
|
diff
|
--- before
+++ after
@@ -1 +1,85 @@
-{}
+{
+ "authority_cert_issuer": null,
+ "authority_cert_serial_number": null,
+ "authority_key_identifier": null,
+ "basic_constraints": [
+ "CA:TRUE"
+ ],
+ "basic_constraints_critical": true,
+ "can_parse_csr": true,
+ "extended_key_usage": null,
+ "extended_key_usage_critical": false,
+ "extensions_by_oid": {
+ "2.5.29.14": {
+ "critical": false,
+ "value": "BBSMV+EVqBSAcJZjWvvpBvQ41y89rw=="
+ },
+ "2.5.29.17": {
+ "critical": false,
+ "value": "MFCCB3NlcnZpY2WCIXNlcnZpY2UuY2RrY2x1c3Rlci5rdWJlaW5pdC5sb2NhbIIicmVnaXN0cnkuY2RrY2x1c3Rlci5rdWJlaW5pdC5sb2NhbA=="
+ },
+ "2.5.29.19": {
+ "critical": true,
+ "value": "MAMBAf8="
+ }
+ },
+ "key_usage": null,
+ "key_usage_critical": false,
+ "name_constraints_critical": false,
+ "name_constraints_excluded": null,
+ "name_constraints_permitted": null,
+ "ocsp_must_staple": null,
+ "ocsp_must_staple_critical": false,
+ "public_key": "-----BEGIN PUBLIC KEY-----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\nQb3SPnQcX2uuB0Fh7l3gxqcCAwEAAQ==\n-----END PUBLIC KEY-----\n",
+ "public_key_data": {
+ "exponent": 65537,
+ "modulus": 902841776378796863953114626838699653800796571071073380177948720747692176762356340254367546815705564173490210090126068311812093637995861569285677797546155262940564325510413044679845200525864466772895220176994505650988823413855607695348058190746923170412597109345095023842359304819149110454835928231405455687136048699103257672153731793628845901323333069619040076329352347384044785088716340313087730253293391104500319639523489385280684664126461519931530281953044160544354449823998569001479965020981002682517853490175820452272612811646396485210886094768135827553408852791683095829302241344490101030175723721061991693141030347154020514278697948491536109923764349680272278376449870129683593603798527458974850010495671090318141785676052519992073396128196822297903987882474495281500784324798051841269195938284785694763712673370164243448899984578791001271122903555535712582488502272332265679858667133260169994523069055498536243897888271742001923673397970782761749865328406254005668088597900654630588274073383027323717312746572160316595309822402226876543620397663912604598208609797845075878194540395252055305108165919053110879719783724641420431356428520477154699448226492764851543769020998771898721599825001742712811785360011954328029852911271,
+ "size": 4096
+ },
+ "public_key_fingerprints": {
+ "sha256": "5f:0c:cf:49:d1:68:59:7f:d7:34:1c:67:ba:6a:25:e0:5e:75:11:2f:f6:19:9a:e9:71:b0:45:0c:1b:ad:99:82"
+ },
+ "public_key_type": "RSA",
+ "signature_valid": true,
+ "subject": {
+ "commonName": "service.cdkcluster.kubeinit.local",
+ "countryName": "US",
+ "localityName": "MyCity",
+ "organizationName": "MyCompany",
+ "organizationalUnitName": "MyDepartment",
+ "stateOrProvinceName": "MyState"
+ },
+ "subject_alt_name": [
+ "DNS:service",
+ "DNS:service.cdkcluster.kubeinit.local",
+ "DNS:registry.cdkcluster.kubeinit.local"
+ ],
+ "subject_alt_name_critical": false,
+ "subject_key_identifier": "8c:57:e1:15:a8:14:80:70:96:63:5a:fb:e9:06:f4:38:d7:2f:3d:af",
+ "subject_ordered": [
+ [
+ "countryName",
+ "US"
+ ],
+ [
+ "stateOrProvinceName",
+ "MyState"
+ ],
+ [
+ "localityName",
+ "MyCity"
+ ],
+ [
+ "organizationName",
+ "MyCompany"
+ ],
+ [
+ "organizationalUnitName",
+ "MyDepartment"
+ ],
+ [
+ "commonName",
+ "service.cdkcluster.kubeinit.local"
+ ]
+ ]
+}
|
extendedKeyUsage
|
None
|
filename
|
/var/kubeinit/registry/certs/domain.csr
|
invocation
|
{
"module_args": {
"attributes": null,
"authority_cert_issuer": null,
"authority_cert_serial_number": null,
"authority_key_identifier": null,
"backup": false,
"basic_constraints": [
"CA:TRUE"
],
"basic_constraints_critical": true,
"common_name": "service.cdkcluster.kubeinit.local",
"country_name": "US",
"create_subject_key_identifier": true,
"crl_distribution_points": null,
"digest": "sha256",
"email_address": null,
"extended_key_usage": null,
"extended_key_usage_critical": false,
"force": false,
"group": null,
"key_usage": null,
"key_usage_critical": false,
"locality_name": "MyCity",
"mode": null,
"name_constraints_critical": false,
"name_constraints_excluded": null,
"name_constraints_permitted": null,
"ocsp_must_staple": false,
"ocsp_must_staple_critical": false,
"organization_name": "MyCompany",
"organizational_unit_name": "MyDepartment",
"owner": null,
"path": "/var/kubeinit/registry/certs/domain.csr",
"privatekey_content": null,
"privatekey_passphrase": null,
"privatekey_path": "/var/kubeinit/registry/certs/domain.key",
"return_content": false,
"select_crypto_backend": "auto",
"selevel": null,
"serole": null,
"setype": null,
"seuser": null,
"state": "present",
"state_or_province_name": "MyState",
"subject": null,
"subject_alt_name": [
"DNS:service",
"DNS:service.cdkcluster.kubeinit.local",
"DNS:registry.cdkcluster.kubeinit.local"
],
"subject_alt_name_critical": false,
"subject_key_identifier": null,
"subject_ordered": null,
"unsafe_writes": false,
"use_common_name_for_san": true,
"version": 1
}
}
|
keyUsage
|
None
|
name_constraints_excluded
|
|
name_constraints_permitted
|
|
ocspMustStaple
|
|
privatekey
|
/var/kubeinit/registry/certs/domain.key
|
subject
|
[
[
"C",
"US"
],
[
"ST",
"MyState"
],
[
"L",
"MyCity"
],
[
"O",
"MyCompany"
],
[
"OU",
"MyDepartment"
],
[
"CN",
"service.cdkcluster.kubeinit.local"
]
]
|
subjectAltName
|
[
"DNS:service",
"DNS:service.cdkcluster.kubeinit.local",
"DNS:registry.cdkcluster.kubeinit.local"
]
|