Launch this commands:
CATOP=./personalCA
CAKEY=./cakey.pem
CAREQ=./careq.pem
CACERT=./cacert.pem
cd /etc/ssl
mkdir $CATOP
mkdir $CATOP/certs
mkdir $CATOP/crl
mkdir $CATOP/newcerts
mkdir $CATOP/private
echo “00” > $CATOP/serial
echo “00” > $CATOP/crlnumber
touch $CATOP/index.txt
export OPENSSL_CONF=/etc/ssl/essetigiCA.cnf
copy /etc/ssl/openssl.cnf to personalCA.cnf and edit OrganizationName, Country, State, ecc fields.
Then execute:
openssl req -new -keyout $CATOP/private/$CAKEY -out $CATOP/$CAREQ
write a complex passhprase […]