Lines Matching refs:option
85 with the B<-in> option, or multiple requests can be processed by
145 If present this should be the last option, all subsequent arguments
201 this option should be used with caution.
219 (see the configuration option B<database>), and uses the same
248 This overrides the B<-days> option.
254 Regardless of the option B<-not_before>, the days are always counted from
256 When used together with the option B<-not_after>/B<-startdate>, the explicit
264 digest that is set is ignored. This option also applies to CRLs.
268 This option defines the CA "policy" to use. This is a section in
275 This is a deprecated option to make this command work with very old versions
283 fields in the relevant policy section. When this option is set the order
292 the altName extension of the certificate. When this option is set the
306 unless the B<-extfile> option is used).
314 (using the default section unless the B<-extensions> option is also
334 This option causes field values to be interpreted as UTF8 strings, by
342 fails, specifying this option creates a new random serial to be used as next
350 This overrides any option or configuration to use a serial number file.
354 This option has been deprecated and has no effect.
370 This option generates a CRL based on information in the index file.
375 this option is not present, the current time is used. Accepts times in
382 this option is present, any values given for B<-crldays>, B<-crlhours>
459 is found as follows: If the B<-name> command line option is used,
461 be used must be named in the B<default_ca> option of the B<ca> section
472 options. Where the option is present in the configuration file
474 option is described as mandatory then it must be present in
492 and long names are the same when this option is used.
496 The same as the B<-outdir> command line option. It specifies
506 Same as the B<-keyfile> option. The file containing the
517 The same as the B<-days> option. The number of days from today to certify
522 The same as the B<-startdate> option. The start date to certify
527 The same as the B<-enddate> option. Either this option or
534 will only be used if neither command line option is present. At
539 The same as the B<-md> option. Mandatory except where the signing algorithm does
555 the B<-selfsign> command line option.
574 A fallback to the B<-extensions> option.
578 A fallback to the B<-crlexts> option.
611 If neither option is present the format used in earlier versions of
619 If set to B<none> or this option is not present then extensions are
625 using this option.
627 The main use of this option is to allow a certificate request to supply
639 are silently deleted, unless the B<-preserveDN> option is set but
644 The input to the B<-spkac> command line option is a Netscape
731 name_opt = ca_default # Subject name display option
732 cert_opt = ca_default # Certificate display option
764 CRL: however there is no option to do this.
785 deleted. This does not happen if the B<-preserveDN> option is used. To
788 option can be used. The behaviour should be more friendly and
809 The B<copy_extensions> option should be used with caution. If care is
842 define a RANDFILE for saving and restoring randomness. This option is
845 The B<-section> option was added in OpenSSL 3.0.0.
847 The B<-multivalue-rdn> option has become obsolete in OpenSSL 3.0.0 and
850 The B<-engine> option was deprecated in OpenSSL 3.0.