Adapt ChangeLog
diff --git a/ChangeLog b/ChangeLog
index 4436237..8bf697a 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -6,6 +6,13 @@
    * Correct extraction of signature-type from PK instance in X.509 CRT and CSR
      writing routines that prevented these functions to work with alternative
      RSA implementations. Raised by J.B. in the Mbed TLS forum. Fixes #1011.
+   * Don't print X.509 version tag for v1 CRT's, and omit extensions for
+     non-v3 CRT's.
+
+Changes
+   * Extend cert_write example program by options to set the CRT version
+     and the message digest. Further, allow enabling/disabling of authority
+     identifier, subject identifier and basic constraints extensions.
 
 = mbed TLS 2.6.0 branch released 2017-08-10