openstack-manuals/doc/common/tables/nova-ca.xml

90 lines
2.9 KiB
XML

<?xml version='1.0' encoding='UTF-8'?>
<para xmlns="http://docbook.org/ns/docbook" version="5.0">
<!-- Warning: Do not edit this file. It is automatically
generated and your changes will be overwritten.
The tool to do so lives in openstack-doc-tools repository. -->
<table rules="all" xml:id="config_table_nova_ca">
<caption>Description of CA configuration options</caption>
<col width="50%"/>
<col width="50%"/>
<thead>
<tr>
<th>Configuration option = Default value</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<th colspan="2">[DEFAULT]</th>
</tr>
<tr>
<td>ca_file = cacert.pem</td>
<td>(StrOpt) Filename of root CA</td>
</tr>
<tr>
<td>ca_path = $state_path/CA</td>
<td>(StrOpt) Where we keep our root CA</td>
</tr>
<tr>
<td>cert_manager = nova.cert.manager.CertManager</td>
<td>(StrOpt) Full class name for the Manager for cert</td>
</tr>
<tr>
<td>cert_topic = cert</td>
<td>(StrOpt) The topic cert nodes listen on</td>
</tr>
<tr>
<td>crl_file = crl.pem</td>
<td>(StrOpt) Filename of root Certificate Revocation List</td>
</tr>
<tr>
<td>key_file = private/cakey.pem</td>
<td>(StrOpt) Filename of private key</td>
</tr>
<tr>
<td>keys_path = $state_path/keys</td>
<td>(StrOpt) Where we keep our keys</td>
</tr>
<tr>
<td>project_cert_subject = /C=US/ST=California/O=OpenStack/OU=NovaDev/CN=project-ca-%.16s-%s</td>
<td>(StrOpt) Subject for certificate for projects, %s for project, timestamp</td>
</tr>
<tr>
<td>ssl_ca_file = None</td>
<td>(StrOpt) CA certificate file to use to verify connecting clients</td>
</tr>
<tr>
<td>ssl_cert_file = None</td>
<td>(StrOpt) SSL certificate of API server</td>
</tr>
<tr>
<td>ssl_key_file = None</td>
<td>(StrOpt) SSL private key of API server</td>
</tr>
<tr>
<td>use_project_ca = False</td>
<td>(BoolOpt) Should we use a CA for each project?</td>
</tr>
<tr>
<td>user_cert_subject = /C=US/ST=California/O=OpenStack/OU=NovaDev/CN=%.16s-%.16s-%s</td>
<td>(StrOpt) Subject for certificate for users, %s for project, user, timestamp</td>
</tr>
<tr>
<th colspan="2">[ssl]</th>
</tr>
<tr>
<td>ca_file = None</td>
<td>(StrOpt) CA certificate file to use to verify connecting clients.</td>
</tr>
<tr>
<td>cert_file = None</td>
<td>(StrOpt) Certificate file to use when starting the server securely.</td>
</tr>
<tr>
<td>key_file = None</td>
<td>(StrOpt) Private key file to use when starting the server securely.</td>
</tr>
</tbody>
</table>
</para>