Elaborate on documentation
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/linux_domain_identity_authentication_and_policy_guide/replace-http-ldap-cert
In the section where the openssl command is used, is the "O" attribute supposed to be the base name of the FQDN or the Kerberos Realm?
In most cases they are the same except for Kerberos being upper case. However, not always. From my knowledge, the O attribute is normally the base of the FQDN. But, the documentation has it in all capital which would imply it the Kerberos Realm.