Show Table of Contents
Chapter 18. GenExtKeyUsage (Adding the Key Usage Extension to a Request)
The
GenExtKeyUsage tool creates a base-64 encoded blob that adds ExtendedKeyUsage (OID 2.5.29.37) to the certificate. This blob is pasted into the certificate approval page when the certificate is created.
18.1. Syntax
The
GenExtKeyUsage tool has the following syntax:
GenExtKeyUsage [true|false] OID ...
| Option | Description |
|---|---|
true | false | Sets the criticality. true means the extension is critical; false means it is not critical. The criticality value is used during the certificate validation process. If an extension is marked as critical, then the path validation software must be capable of interpreting that extension. |
| OID | The OID numbers that represent each certificate type selected for the certificate. |

Where did the comment section go?
Red Hat's documentation publication system recently went through an upgrade to enable speedier, more mobile-friendly content. We decided to re-evaluate our commenting platform to ensure that it meets your expectations and serves as an optimal feedback mechanism. During this redesign, we invite your input on providing feedback on Red Hat documentation via the discussion platform.