在同一个文件夹中创建以下文件

[ req ]
default_bits        = 2048
default_keyfile     = privkey.pem
distinguished_name  = req_distinguished_name
req_extensions      = v3_req    # 指定请求使用 v3_req 扩展
prompt = no          # 不提示输入
 
[ req_distinguished_name ]
C  = CN
ST = Zhejiang
L  = Hangzhou
O  = 1
OU = 1
CN = *.home.cn
emailAddress = admin@mycompany.com
 
[ v3_req ]
subjectAltName = @alt_names   # 引用 alt_names
 
[ alt_names ]
DNS.1   = *.home.cn
IP.1    = 127.0.0.1

openssl req -x509 -nodes -days 3650 -newkey rsa:2048 -keyout home.key -out home.crt -config ./openssl.ini -extensions v3_req

执行脚本文件后即可得到home.crt和home.key文件,然后将证书安装到设备和反代域名中即可