#!/bin/sh # create CA openssl req -x509 \ -sha256 -days 356 \ -nodes \ -newkey rsa:2048 \ -subj "/CN=MyOwnCA/C=US/L=San Fransisco" \ -keyout rootCA.key -out rootCA.crt # create server private key openssl genrsa -out server.key 2048 # create certificate signing request (CSR) cat > csr.conf < cert.conf <