Changeset View
Changeset View
Standalone View
Standalone View
sbin/init/rc.conf
Context not available. | |||||
syslogd_enable="YES" # Run syslog daemon (or NO). | syslogd_enable="YES" # Run syslog daemon (or NO). | ||||
syslogd_program="/usr/sbin/syslogd" # path to syslogd, if you want a different one. | syslogd_program="/usr/sbin/syslogd" # path to syslogd, if you want a different one. | ||||
syslogd_flags="-s" # Flags to syslogd (if enabled). | syslogd_flags="-s" # Flags to syslogd (if enabled). | ||||
syslogd_oomprotect="YES" # Don't kill syslogd when swap space is exhausted. | syslogd_oomprotect="YES" # Don't kill syslogd when swap space is exhausted. | ||||
altlog_proglist="" # List of chrooted applicatioins in /var | altlog_proglist="" # List of chrooted applicatioins in /var | ||||
inetd_enable="NO" # Run the network daemon dispatcher (YES/NO). | inetd_enable="NO" # Run the network daemon dispatcher (YES/NO). | ||||
inetd_program="/usr/sbin/inetd" # path to inetd, if you want a different one. | inetd_program="/usr/sbin/inetd" # path to inetd, if you want a different one. | ||||
Context not available. | |||||
# Flags for sendmail_msp_queue daemon. | # Flags for sendmail_msp_queue daemon. | ||||
sendmail_rebuild_aliases="NO" # Run newaliases if necessary (YES/NO). | sendmail_rebuild_aliases="NO" # Run newaliases if necessary (YES/NO). | ||||
############################################################## | |||||
### Trust system options #################################### | |||||
############################################################## | |||||
trust_machine_keygen_enable="NO" # Generate machine root keypair | |||||
trust_machine_key_regen="NO" # Regenerate expired keys | |||||
trust_machine_genpkey_alg="RSA" # Key generation algorithm | |||||
trust_machine_genpkey_opts="-pkeyopt rsa_keygen_bits:4096" | |||||
# Key generation options | |||||
trust_machine_req_DN="" # Subject for machine root cert | |||||
trust_machine_req_days="3650" # Expiration for machine root cert | |||||
trust_machine_req_opts="" # Extra req options | |||||
trust_machine_req_digest="sha256" # Digest algorithm for req | |||||
trust_machine_x509_opts="" # Extra signing options | |||||
trust_machine_x509_signkey="/etc/trust/root/priv/machine.pem" | |||||
# Signing key for local cert | |||||
trust_machine_x509_key_usage="digitalSignature,keyCertSign,cRLSign" | |||||
# Key usage for local root cert | |||||
trust_machine_x509_ext_key_usage="" | |||||
# Extended key usage for local cert | |||||
trust_machine_x509_extensions="" | |||||
# Extra X509v3 extensions | |||||
trust_local_keygen_enable="NO" # Generate local root keypair | |||||
trust_local_key_regen="YES" # Regenerate expired keys | |||||
trust_local_genpkey_alg="RSA" # Key generation algorithm | |||||
trust_local_genpkey_opts="-pkeyopt rsa_keygen_bits:4096" | |||||
# Key generation options | |||||
trust_local_req_DN="" # Subject for local root cert | |||||
trust_local_req_days="180" # Expiration for local root cert | |||||
trust_local_req_opts="" # Extra req options | |||||
trust_local_req_digest="sha256" # Digest algorithm for req | |||||
trust_local_x509_opts="" # Extra signing options | |||||
trust_local_x509_signkey="/etc/trust/root/priv/machine.pem" | |||||
# Signing key for local cert | |||||
trust_local_x509_signcert="/etc/trust/root/certs/machine.pub.pem" | |||||
# Signing certificate for local cert | |||||
trust_local_x509_key_usage="digitalSignature,keyCertSign,cRLSign" | |||||
# Key usage for local root cert | |||||
trust_local_x509_ext_key_usage="codeSigning" | |||||
# Extended key usage for local cert | |||||
trust_local_x509_extensions="" | |||||
# Extra X509v3 extensions | |||||
############################################################## | ############################################################## | ||||
### Miscellaneous administrative options ################### | ### Miscellaneous administrative options ################### | ||||
Context not available. |