<openca>
    <access_control>
        <channel>
            <type>mod_ssl</type>
            <protocol>ssl</protocol>
            <source>.*</source>
            <asymmetric_cipher>.*</asymmetric_cipher>
            <asymmetric_keylength>0</asymmetric_keylength>
            <symmetric_cipher>.*</symmetric_cipher>
            <symmetric_keylength>128</symmetric_keylength>
        </channel>
        <login>
            <type>passwd</type>
            <database>internal</database>
                <passwd>
                    <user>
                        <name>root</name>
                        <algorithm>sha1</algorithm>
                        <digest>3Hbp8MAAbo+RngxRXGbbujmC94U</digest>
                        <role>CA Operator</role>
                    </user>
                </passwd>
        </login>
        <acl_config>
            <acl>yes</acl>
            <list>/usr/local/openca/openca/etc/rbac/acl.xml</list>
            <command_dir>/usr/local/openca/openca/etc/rbac/cmds</command_dir>
            <module_id>@ra_module_id@</module_id>
            <ca_cert>/usr/local/openca/openca/var/crypto/cacerts/cacert.pem</ca_cert>
            <map_role>yes</map_role>
            <map_operation>yes</map_operation>
        </acl_config>
    </access_control>
    <token_config_file>/usr/local/openca/openca/etc/token.xml</token_config_file>
</openca>