Following ca.cfg was used, just in case :
======================
[DEFAULT]
pki_server_database_password=Password2021
pki_hsm_enable=True
pki_hsm_libfile=/usr/lib64/pkcs11/libsofthsm2.so
#pki_hsm_libfile=/usr/lib64/softhsm/libsofthsm.so
pki_hsm_modulename=softhsm
pki_token_name=test
pki_token_password=Password2021
[CA]
pki_admin_email=caadmin(a)example.com
pki_admin_name=caadmin
pki_admin_nickname=caadmin
pki_admin_password=Thales2021
pki_admin_uid=caadmin
pki_client_database_password=Password2021
pki_client_database_purge=False
pki_client_pkcs12_password=Password2021
pki_ds_base_dn=dc=ca,dc=pki,dc=thales,dc=com
pki_ds_database=ca
pki_ds_password=Password2021
pki_security_domain_name=EXAMPLE
pki_ca_signing_nickname=ca_signing
pki_ocsp_signing_nickname=ca_ocsp_signing
pki_audit_signing_nickname=ca_audit_signing
pki_sslserver_nickname=sslserver
pki_subsystem_nickname=subsystem
======================