This page is read only. You can view the source, but not change it. Ask your administrator if you think this is wrong. ====== Create Certificate Signing Request (CSR) using OpenSSL ====== Create private key: <code bash> openssl genrsa -out server.key 4096 </code> Configuration File: //server.conf// <code ini> distinguished_name = req_distinguished_name req_extensions = v3_req prompt = no [req_distinguished_name] C = COUNTRY L = LOCATION O = ORGANIZATION OU = ORGANIZATION UNIT CN = *.lab.mueller.world [v3_req] keyUsage = keyEncipherment, dataEncipherment extendedKeyUsage = serverAuth subjectAltName = @alt_names [alt_names] DNS.1 = *.lab.mueller.world </code> Create Certificate Signing Request <code bash> openssl req -new -key server.key -config server.conf -out server.csr </code>