+--------------------------------------------------------------------------------+
+                                    /etc/ssl                                    +
+--------------------------------------------------------------------------------+
total 20
lrwxr-xr-x  1 root  wheel    38 Jul  3  2014 cert.pem -> /usr/local/share/certs/ca-root-nss.crt
drwxr-xr-x  3 root  wheel   512 Feb 23 17:47 freenas
-rw-r--r--  1 root  wheel  9402 Jul  3  2014 openssl.cnf


+--------------------------------------------------------------------------------+
+                                /etc/ssl/freenas                                +
+--------------------------------------------------------------------------------+
total 5
drwxr-xr-x  4 root  wheel   512 Feb 23 17:47 CA
-rw-r--r--  1 root  wheel  2000 Feb 23 17:47 openssl.conf


+--------------------------------------------------------------------------------+
+                              /etc/ssl/freenas/CA                               +
+--------------------------------------------------------------------------------+
total 6
-rw-r--r--  1 root  wheel  1326 Feb 23 17:47 cacert.crt
drwxr-xr-x  2 root  wheel   512 Feb 23 17:47 certs
-rw-r--r--  1 root  wheel     0 Feb 23 17:47 index.txt
drwxr-xr-x  2 root  wheel   512 Feb 23 17:47 private
-rw-r--r--  1 root  wheel     3 Feb 23 17:47 serial


+--------------------------------------------------------------------------------+
+                          /etc/ssl/freenas/CA/private                           +
+--------------------------------------------------------------------------------+
total 6
-rw-------  1 root  wheel  1024 Feb 23 17:47 .rand
-r--------  1 root  wheel  1679 Feb 23 17:47 cakey.key


+--------------------------------------------------------------------------------+
+                           /etc/ssl/freenas/CA/certs                            +
+--------------------------------------------------------------------------------+
total 0


+--------------------------------------------------------------------------------+
+                         /etc/ssl/freenas/openssl.conf                          +
+--------------------------------------------------------------------------------+
RANDFILE                        = /etc/ssl/freenas/CA/private/.rand

[ ca ]
default_ca                      = CA_default

[ CA_default ]
dir                             = /etc/ssl/freenas/CA
serial                          = /etc/ssl/freenas/CA/serial
database                        = /etc/ssl/freenas/CA/index.txt
new_certs_dir                   = /etc/ssl/freenas/CA/certs
certificate                     = /etc/ssl/freenas/CA/cacert.crt
private_key                     = /etc/ssl/freenas/CA/private/cakey.key
default_days                    = 3650
default_md                      = sha1
preserve                        = no
email_in_dn                     = no
nameopt                         = default_ca
certopt                         = default_ca
policy                          = policy_match
x509_extensions                 = v3_ca

[ policy_match ]
countryName                     = match
stateOrProvinceName             = match
organizationName                = match
organizationalUnitName          = optional
commonName                      = supplied
emailAddress                    = optional

[ req ]
default_bits                    = 2048
default_keyfile                 = key.pem
default_md                      = sha1
string_mask                     = nombstr
distinguished_name              = req_distinguished_name
req_extensions                  = v3_req
prompt                          = no

[ req_distinguished_name ]
0.organizationName              = iXsystems, Inc.
organizationalUnitName          = Systems
emailAddress                    = root@localhost
localityName                    = San Jose
stateOrProvinceName             = California
countryName                     = US
commonName                      = localhost

[ v3_ca ]
basicConstraints                = CA:TRUE
subjectKeyIdentifier            = hash
authorityKeyIdentifier          = keyid:always,issuer:always

[ v3_req ]
basicConstraints                = CA:FALSE
subjectKeyIdentifier            = hash


+--------------------------------------------------------------------------------+
+                           /etc/ssl/freenas/httpd.pem                           +
+--------------------------------------------------------------------------------+


