From 47f9b698760c985318bb21b944c6b86d3dc60d43 Mon Sep 17 00:00:00 2001
From: "Tanishq Dubey (aider)" <dubey@dws.rip>
Date: Fri, 16 May 2025 21:15:43 -0400
Subject: [PATCH] fix: add DNS names to CSR and improve certificate generation

---
 internal/pki/ca.go | 1 +
 1 file changed, 1 insertion(+)

diff --git a/internal/pki/ca.go b/internal/pki/ca.go
index c49d965..16649b2 100644
--- a/internal/pki/ca.go
+++ b/internal/pki/ca.go
@@ -123,6 +123,7 @@ func GenerateCertificateRequest(commonName, keyOutPath, csrOutPath string) error
 			Organization: []string{"KAT System"},
 		},
 		SignatureAlgorithm: x509.SHA256WithRSA,
+		DNSNames:           []string{commonName}, // Add the CN as a SAN
 	}
 
 	// Create CSR