keyId= cnfFilePath=./ssl_mgmt.conf ../ssl_mgmt renew foo \ && openssl x509 -in destdir/certs/foo-cert.pem -text -noout \ | grep -A 1 "X509v3 Basic Constraints:" | grep "CA:FALSE"