How to set DigitalSignature KeyUsage on Root and Intermediatte CAs?

I have a product that does not recognise my Vault generate Root and Intermediatte CAs are being valid CA for Client Authentication as I am missing DigitalSignature from the KeyUsage field.

How do I set that value?

Regards
Nicholas Irving
Example of working CA


Example of non working CA issued by HashiCorp Vault
notworkingCA