1# This file contains X509v3 extension definitions for OpenSSL 2# certificate generation. 3 4[ CommCert1 ] 5subjectKeyIdentifier = none 6authorityKeyIdentifier = keyid 7 8# Include TCAT specified fields 9# Because ASN1:OCTETSTRING doesn't work with hex input, we use raw DER here. Tag 0x04 is OCTETSTRING. 10# See https://datatracker.ietf.org/doc/html/rfc5280#section-4.1 11# 121.3.6.1.4.1.44970.3 = DER:04:05:21:01:01:01:01 13