I created a CSR that includes the subject object names:
openssl req -out mycsr.pem -new -key mykey.pem -days 365
When I check this, it looks as expected with a new field:
X509v3 Subject Alternative Name: DNS: my.alt.dns
However, when I use this to sign a certificate, this field is omitted for some reason.
I generate it with the following command:
openssl ca -out mycert.pem -infiles mycsr.pem
Could it be that my CA certificate must include the same Alt name to enable it?
ssl openssl ssl-certificate
jimmy
source share