Lines Matching full:extensions

45 [B<-ext> I<extensions>]
67 [B<-extensions> I<section>]
96 key identifier extensions are included as described in L<x509v3_config(5)>.
141 X.509 extensions included in a certificate input are not copied by default.
142 X.509 extensions to be added can be specified using the B<-extfile> option.
150 X.509 extensions included in the request are not copied by default.
151 X.509 extensions to be added can be specified using the B<-extfile> option.
155 Determines how to handle X.509 extensions
158 If I<arg> is B<none> or this option is not present then extensions are ignored.
159 If I<arg> is B<copy> or B<copyall> then all extensions are copied,
160 except that subject identifier and authority key identifier extensions
163 The B<-ext> option can be used to further restrict which extensions to copy.
235 any extensions present and any trust settings.
310 =item B<-ext> I<extensions>
312 Prints out the certificate extensions in text form.
313 Can also be used to restrict which extensions to copy.
314 Extensions are specified
328 This option performs tests on the certificate extensions and outputs
330 L<openssl-verification-options(1)/Certificate Extensions>.
465 by default all certificate extensions are retained.
468 the B<-clrext> option prevents taking over any extensions from the source.
470 neither subject identifier nor authority key identifier extensions are included.
474 Configuration file containing certificate and request X.509 extensions to add.
476 =item B<-extensions> I<section>
478 The section in the extfile to add X.509 extensions from.
480 specified then the extensions should either be contained in the unnamed
482 "extensions" which contains the section to use.
488 key identifier extensions are included as described in L<x509v3_config(5)>.
699 Don't print out any X509V3 extensions.
704 certificate extensions.
708 Print an error message for unsupported certificate extensions.
712 ASN1 parse unsupported extensions.
716 Hex dump unsupported extensions.
738 Print more extensions of a certificate:
772 extensions for a CA:
774 openssl x509 -req -in careq.pem -extfile openssl.cnf -extensions v3_ca \
778 certificate extensions:
780 openssl x509 -req -in req.pem -extfile openssl.cnf -extensions v3_usr \
803 wrong private key, using unsuitable X.509 extensions,
835 and key identifier extensions are included by default.