expire-interval 32
}
+set P(tls-server-longterm) {
+ extensions tls-server-extensions
+ issue-time "*-*-* 00:00:00"
+ start-skew 1
+ expire-interval 43838
+}
+
proc update-hook {} {
exec 2>@stderr rsync -av --delete-after ca.cert crl cert req publish/
exec 2>@stderr userv root publish-ca