Signing algorithm SHA256 ECDSA

Default asymmetric key cipher: P-256

Expiration: 7 days

Certificate attributes

The client certificates will be set with the following attributes that can be used to validate the certifcate:

CN= Connection ID

OU= Tenant ID

Extensions subjectAltName : dns: <Connection ID>.<Tenant ID>.vince.live

Certificate chain and CA certificates

Root CA:

A self signed root CA is used to sign subordinate/issuing CA:

rootCA.pem

Issuing CA:

Currently a single subordinate/issuing CA is used to sign the client certificates:

issuingCA.pem