I am new to this. My objective is to create a CSR for my Cisco Firewall. I have been suggested to use OpenSSL as I need to add the EKU which is not possible on Cisco CSR. The second requirement is to use multiple SANs.
I have no clue how to do this and I don't know how or where I would generate the key (Cisco or OpenSSL). I have OpenSSL on both Linux and MacOS. Can someone post step-by-step instructions for me to achieve this goal?