Generate per-site SSL intermediate CA, fix cred/pki paths
Change-Id: I0bda0791d82142acac8c6af0e152d8d0954ef719
diff --git a/roles/pki-intermediate-ca/templates/openssl_im.cnf.j2 b/roles/pki-intermediate-ca/templates/openssl_im.cnf.j2
index 6647d83..9ae1504 100644
--- a/roles/pki-intermediate-ca/templates/openssl_im.cnf.j2
+++ b/roles/pki-intermediate-ca/templates/openssl_im.cnf.j2
@@ -4,7 +4,7 @@
default_ca = CA_default
[ CA_default ]
-dir = {{ pki_dir }}/intermediate_ca
+dir = {{ pki_dir }}/{{ site_name }}_im_ca
certs = $dir/certs
crl_dir = $dir/crl
new_certs_dir = $dir/newcerts
@@ -66,7 +66,7 @@
stateOrProvinceName_default = California
localityName_default = Menlo Park
0.organizationName_default = ON.Lab
-organizationalUnitName_default = Test Deployment
+organizationalUnitName_default = {{ site_humanname }}
emailAddress_default = privateca@opencord.org
[ v3_intermediate_ca ]