2 default_bits = @CERT_WIDTH@
3 default_keyfile = @CERT_PRIVKEY@
5 distinguished_name = req_distinguished_name
6 req_extensions = v3_req
8 [ req_distinguished_name ]
15 emailAddress = @CERT_EMAIL@
17 subjectKeyIdentifier=hash
18 authorityKeyIdentifier=keyid:always,issuer:always
19 basicConstraints = CA:true
21 # Extensions to add to a certificate request
22 basicConstraints = CA:FALSE
23 keyUsage = nonRepudiation, digitalSignature, keyEncipherment