VyOS PKI configuration 300 Certificate Authority #include CA certificate in PEM format CA certificate is not base64-encoded #include CA private key in PEM format CA private key in PEM format CA private key is not base64-encoded CA private key is password protected Certificate revocation list in PEM format CRL is not base64-encoded If parent CA is present, this CA certificate will be included in generated CRLs Certificate #include Certificate in PEM format Certificate is not base64-encoded Automatic Certificate Management Environment (ACME) request #include https://acme-v02.api.letsencrypt.org/directory Domain Name Invalid domain name (RFC 1123 section 2).\nMay only contain letters, numbers and .-_ Email address to associate with certificate #include #include Size of the RSA key 2048 3072 4096 2048 RSA key length 2048 bit 3072 RSA key length 3072 bit 4096 RSA key length 4096 bit (2048|3072|4096) 2048 #include Certificate private key Certificate private key in PEM format Certificate private key is not base64-encoded Certificate private key is password protected If CA is present, this certificate will be included in generated CRLs Diffie-Hellman parameters #include DH parameters in PEM format DH parameters are not base64-encoded Public and private keys Public key Public key in PEM format Public key is not base64-encoded Private key Private key in PEM format Private key is not base64-encoded Private key is password protected OpenVPN keys OpenVPN shared secret key OpenVPN shared secret key data OpenVPN shared secret key version X509 Settings X509 Default Values Default country GB Default state Some-State Default locality Some-City Default organization VyOS