This is an old revision of the document!
Create private key:
openssl genrsa -out server.key 4096
Configuration File: server.conf
distinguished_name = req_distinguished_name
req_extensions = v3_req
prompt = no
[req_distinguished_name]
C = COUNTRY
L = LOCATION
O = ORGANIZATION
OU = ORGANIZATION UNIT
CN = *.lab.mueller.world
[v3_req]
keyUsage = keyEncipherment, dataEncipherment
extendedKeyUsage = serverAuth
subjectAltName = @alt_names
[alt_names]
DNS.1 = *.lab.mueller.world
Create Certificate Signing Request
openssl req -new -key server.key -config server.conf -out server.csr