all: cacert.pem cakey.pem:pwd.txt openssl genrsa -aes256 -passout file:pwd.txt -out cakey.pem 4096 cacert.pem:cakey.pem openssl req -new -x509 -key cakey.pem -out cacert.pem -config localpki_ssl.conf -set_serial 42 -extensions local_pki -days 123 -passin file:pwd.txt cacert.p12:cacert.pem openssl pkcs12 -export -in cacert.pem -out cacert.p12 -inkey cakey.pem -passin file:pwd.txt -password file:pwd0.txt cacert.p12.pem:cacert.p12 openssl pkcs12 -in cacert.p12 -clcerts -passin file:pwd.txt -nokeys -out cacert.p12.pem cacert.sha:cacert.pem openssl dgst -r cacert.pem -out cacert.sha