[ igi_test_ca2 ] dir = ${ENV::CA_NAME} certs = $dir/certs database = $dir/index.txt serial = $dir/serial certificate = $dir/ca.crt private_key = $dir/private/ca.key default_crl_days = 30 default_md = sha512 [ igi_test_ca2_cert ] default_bits = 2048 default_keyfile = ${ENV::CA_NAME}/private/ca.key distinguished_name = ${ENV::CA_NAME}_dn prompt = no encrypt_key = no default_md = sha512 x509_extensions = ${ENV::CA_NAME}_extensions [ igi_test_ca2_dn ] C = IT O = IGI CN = Test CA 2 [ igi_test_ca2_extensions ] subjectKeyIdentifier = hash authorityKeyIdentifier = keyid:always, issuer:always basicConstraints = critical, CA:true keyUsage = critical, cRLSign, keyCertSign