$ openssl req -x509 -out cert.pem -keyout privkey.pem -newkey ec:<(openssl ecparam -name secp384r1) -nodes -subj '/CN=localhost' -extensions EXT -config <(printf "[dn]\nCN=localhost\n[req]\ndistinguished_name = dn\n[EXT]\nsubjectAltName=DNS:localhost\nkeyUsage=digitalSignature\nextendedKeyUsage=serverAuth") -days 365