[ req ] default_bits = 4096 default_keyfile = server-key.pem distinguished_name = dn #req_extensions = v3_req x509_extensions = v3_req string_mask = utf8only prompt = no default_md = sha256 [ dn ] countryName = PL localityName = Krakow organizationName = Samsung commonName = registry-1.docker.io #emailAddress [ v3_req ] #subjectKeyIdentifier = hash #authorityKeyIdentifier = keyid,issuer basicConstraints = CA:FALSE keyUsage = critical, keyAgreement, nonRepudiation, digitalSignature, keyEncipherment extendedKeyUsage = serverAuth # does not work here because of bug in openssl #subjectAltName = @alternate_names nsComment = "OpenSSL Generated Certificate" #[ alternate_names ] #DNS.4 = ftp.example.com