I\'m trying to generate a certificate for an intermediate-ca with openssl which is signed by my own root ca. The root ca certificate is v3, but when I try to generate a csr