basicConstraints
|
|
changed
|
|
diff
|
--- before
+++ after
@@ -1 +1,85 @@
-{}
+{
+ "authority_cert_issuer": null,
+ "authority_cert_serial_number": null,
+ "authority_key_identifier": null,
+ "basic_constraints": [
+ "CA:TRUE"
+ ],
+ "basic_constraints_critical": true,
+ "can_parse_csr": true,
+ "extended_key_usage": null,
+ "extended_key_usage_critical": false,
+ "extensions_by_oid": {
+ "2.5.29.14": {
+ "critical": false,
+ "value": "BBRcE63AWeZ+XwVugZ340Uv1tBVG9w=="
+ },
+ "2.5.29.17": {
+ "critical": false,
+ "value": "MFCCB3NlcnZpY2WCIXNlcnZpY2UuZWtzY2x1c3Rlci5rdWJlaW5pdC5sb2NhbIIicmVnaXN0cnkuZWtzY2x1c3Rlci5rdWJlaW5pdC5sb2NhbA=="
+ },
+ "2.5.29.19": {
+ "critical": true,
+ "value": "MAMBAf8="
+ }
+ },
+ "key_usage": null,
+ "key_usage_critical": false,
+ "name_constraints_critical": false,
+ "name_constraints_excluded": null,
+ "name_constraints_permitted": null,
+ "ocsp_must_staple": null,
+ "ocsp_must_staple_critical": false,
+ "public_key": "-----BEGIN PUBLIC KEY-----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\nMPc7GE6vzXKKoNLhyy7b8HUCAwEAAQ==\n-----END PUBLIC KEY-----\n",
+ "public_key_data": {
+ "exponent": 65537,
+ "modulus": 939174122724878840347289500676467181538300284547672426007416066806319537946646191157990873275322025459148307190488966711910413461236763048779715638599919147403427198105409406796886185722340843318691762121790671466888600402501000471579693763191036765549303807205646867459933539053892129282259995975808672995415651481945981790923176117231672849833937422998807248804592314063081756286417412266758011228487521013015359114318882380928708775573700970350737477805166609189226486824943291442016027671787763867263592393201116617544155235106515770071492786524412317265948726065930959861173440597337219782646903026602519525814401427560166288276088504816955576897149007069590690374774800506392450175427074226624401522755681263064726732475389979833225744613772319024437204196064211451829838045959128808067028443359666131006062214065813971323781003499813378794272139759764046746954599405325298415312602230605408097858056570890062502862781161048348372220100999475104471053480496968983700548055113315738765492718189660390146249517719615057244583725164631341108558431205287921581305582531399895113332253717204615738468207742242677845277489415075698029769234312020092297125875660705049529920943409613565935322817407600578606841580151059951350248632437,
+ "size": 4096
+ },
+ "public_key_fingerprints": {
+ "sha256": "8e:64:db:fe:71:a3:d7:a6:ba:39:d7:17:90:c3:cb:6f:f8:1c:42:d2:63:68:36:0f:d9:0d:cb:e2:67:31:ce:d5"
+ },
+ "public_key_type": "RSA",
+ "signature_valid": true,
+ "subject": {
+ "commonName": "service.ekscluster.kubeinit.local",
+ "countryName": "US",
+ "localityName": "MyCity",
+ "organizationName": "MyCompany",
+ "organizationalUnitName": "MyDepartment",
+ "stateOrProvinceName": "MyState"
+ },
+ "subject_alt_name": [
+ "DNS:service",
+ "DNS:service.ekscluster.kubeinit.local",
+ "DNS:registry.ekscluster.kubeinit.local"
+ ],
+ "subject_alt_name_critical": false,
+ "subject_key_identifier": "5c:13:ad:c0:59:e6:7e:5f:05:6e:81:9d:f8:d1:4b:f5:b4:15:46:f7",
+ "subject_ordered": [
+ [
+ "countryName",
+ "US"
+ ],
+ [
+ "stateOrProvinceName",
+ "MyState"
+ ],
+ [
+ "localityName",
+ "MyCity"
+ ],
+ [
+ "organizationName",
+ "MyCompany"
+ ],
+ [
+ "organizationalUnitName",
+ "MyDepartment"
+ ],
+ [
+ "commonName",
+ "service.ekscluster.kubeinit.local"
+ ]
+ ]
+}
|
extendedKeyUsage
|
None
|
filename
|
/var/kubeinit/registry/certs/domain.csr
|
invocation
|
{
"module_args": {
"attributes": null,
"authority_cert_issuer": null,
"authority_cert_serial_number": null,
"authority_key_identifier": null,
"backup": false,
"basic_constraints": [
"CA:TRUE"
],
"basic_constraints_critical": true,
"common_name": "service.ekscluster.kubeinit.local",
"country_name": "US",
"create_subject_key_identifier": true,
"crl_distribution_points": null,
"digest": "sha256",
"email_address": null,
"extended_key_usage": null,
"extended_key_usage_critical": false,
"force": false,
"group": null,
"key_usage": null,
"key_usage_critical": false,
"locality_name": "MyCity",
"mode": null,
"name_constraints_critical": false,
"name_constraints_excluded": null,
"name_constraints_permitted": null,
"ocsp_must_staple": false,
"ocsp_must_staple_critical": false,
"organization_name": "MyCompany",
"organizational_unit_name": "MyDepartment",
"owner": null,
"path": "/var/kubeinit/registry/certs/domain.csr",
"privatekey_content": null,
"privatekey_passphrase": null,
"privatekey_path": "/var/kubeinit/registry/certs/domain.key",
"return_content": false,
"select_crypto_backend": "auto",
"selevel": null,
"serole": null,
"setype": null,
"seuser": null,
"state": "present",
"state_or_province_name": "MyState",
"subject": null,
"subject_alt_name": [
"DNS:service",
"DNS:service.ekscluster.kubeinit.local",
"DNS:registry.ekscluster.kubeinit.local"
],
"subject_alt_name_critical": false,
"subject_key_identifier": null,
"subject_ordered": null,
"unsafe_writes": false,
"use_common_name_for_san": true,
"version": 1
}
}
|
keyUsage
|
None
|
name_constraints_excluded
|
|
name_constraints_permitted
|
|
ocspMustStaple
|
|
privatekey
|
/var/kubeinit/registry/certs/domain.key
|
subject
|
[
[
"C",
"US"
],
[
"ST",
"MyState"
],
[
"L",
"MyCity"
],
[
"O",
"MyCompany"
],
[
"OU",
"MyDepartment"
],
[
"CN",
"service.ekscluster.kubeinit.local"
]
]
|
subjectAltName
|
[
"DNS:service",
"DNS:service.ekscluster.kubeinit.local",
"DNS:registry.ekscluster.kubeinit.local"
]
|