The typical process for creating an SSL certificate is as follows: # openssl genrsa -des3 -out www.key 2048 Note: When creating the key, you can avoid entering the initial passphrase altogether using: # openssl genrsa -out www.key 2048 At this point it is asking for a PASS PHRASE (which I will describe how to remove): Enter pass phrase for www.key: # openssl req -new -key www.key -out www.csr Next, you will typically send the www.csr file to your registrar. In turn, your registrar will provide you with the .crt (certificate)¬†file. From a security standpoint utilizing a passphrase, is a good thing, but from a …

