#!/bin/bash # Set filenames CA_KEY="ca.key" CA_CERT="ca.crt" SERVER_KEY="server.key" SERVER_CSR="server.csr" SERVER_CERT="server.crt" CA_CONF="ca.conf" SERVER_CONF="server.conf" V3_EXT_CONF="v3_ext.conf" # Generate the CA key openssl genpkey -algorithm RSA -out $CA_KEY -pkeyopt rsa_keygen_bits:2048 # Create the CA configuration file cat >$CA_CONF <$SERVER_CONF <$V3_EXT_CONF <