The CA pass phase is: iloveshinken To generate new certificate with this CA, launch: openssl req -new -nodes -out server.req -keyout server.key -config ./shinken_openssl_cnf openssl ca -out server.pem -config ./shinken_openssl_cnf -infiles server.req cp server.pem server.pem.bkp cp server.key server.pem cat server.pem.bkp >> server.pem cp server.pem client.pem