Instrumental | 68b2315 | 2018-05-01 15:03:25 -0500 | [diff] [blame] | 1 | # SAN Extension |
| 2 | # Copy, then add DNS.1 = name, etc |
| 3 | # |
| 4 | [ server_cert ] |
| 5 | # Extensions for server certificates (`man x509v3_config`). |
| 6 | basicConstraints = CA:FALSE |
| 7 | nsCertType = server, client |
| 8 | nsComment = "OpenSSL Generated Server Certificate" |
| 9 | subjectKeyIdentifier = hash |
| 10 | authorityKeyIdentifier = keyid,issuer:always |
| 11 | keyUsage = critical, digitalSignature, keyEncipherment, nonRepudiation |
| 12 | extendedKeyUsage = serverAuth, clientAuth |
| 13 | subjectAltName = @alt_names |
| 14 | |
| 15 | [ alt_names ] |