Hi All, For our solution to be compliant to RFC 5280: a> What are options to be specified to OpenSSL "req" command during the creation of CSR? b> What are options to be specified to OpenSSL "verify" command to validate a certificate? Does OpenSSL claim to be compliant to RFC 5280? thanks, Bala