2 # For use with the 'CA.all' script.
5 extendedKeyUsage = 1.3.6.1.5.5.7.3.2
8 extendedKeyUsage = 1.3.6.1.5.5.7.3.1
11 # Add this to the PKCS#7 keybag attributes holding the client's private key
12 # for machine authentication.
14 # the presence of this OID tells Windows XP that the cert is intended
15 # for use by the computer itself, and not by an end-user.
17 # The other solution is to use Microsoft's web certificate server
18 # to generate these certs.
20 # 1.3.6.1.4.1.311.17.2