Index: net/data/ssl/scripts/generate-test-certs.sh |
diff --git a/net/data/ssl/scripts/generate-test-certs.sh b/net/data/ssl/scripts/generate-test-certs.sh |
index 9a1a912ead45bcb7a76aca1605a6b962de8b3f0d..f5395e4cf4dec3577d4e9c57ec0739e0e525e0fe 100755 |
--- a/net/data/ssl/scripts/generate-test-certs.sh |
+++ b/net/data/ssl/scripts/generate-test-certs.sh |
@@ -210,7 +210,7 @@ SUBJECT_NAME="req_punycode_dn" \ |
## Reject intranet hostnames in "publicly" trusted certs |
# 365 * 3 = 1095 |
SUBJECT_NAME="req_intranet_dn" \ |
- try openssl req -x509 -days 1095 \ |
+ try openssl req -x509 -days 1095 -extensions req_intranet_san \ |
-config ../scripts/ee.cnf -newkey rsa:2048 -text \ |
-out ../certificates/reject_intranet_hosts.pem |