* Remove the RANDFILE from openssl.cnf. This is out-of-date in opessl beyond version 1.1.1a.
* Update openssl.cnf.tmpl to the latest one from openssl 1.1.1a source
* Revise openssl.cnf.tmpl based on the latest one from openssl 1.1.1a source
* Remove `-no_ssl2' command line argument for openssl, totally.