{"id":3353,"date":"2021-07-16T19:03:29","date_gmt":"2021-07-16T19:03:29","guid":{"rendered":"https:\/\/www.thesslstore.com\/knowledgebase\/?post_type=ht_kb&#038;p=3353"},"modified":"2021-07-16T19:46:28","modified_gmt":"2021-07-16T19:46:28","slug":"amazon-ec2-aws","status":"publish","type":"ht_kb","link":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/","title":{"rendered":"How to Generate a CSR for Amazon EC2 (AWS)"},"content":{"rendered":"\n<p>To learn more about CSRs and the importance of your private key, reference our <a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/cetificate-signing-request-overview\/\">Certificate Signing Request (CSR) Overview article<\/a>. If you already generated the CSR and received your trusted SSL certificate and need help with installation, reference our <a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-install\/how-to-install-an-ssl-tls-certificate-in-amazon-ec2-aws\/\">Amazon EC2 server SSL Installation Instructions<\/a>.<\/p>\n<p>To create a CSR on your Amazon EC2 server, you will use OpenSSL commands within your EC2 instance.<\/p>\n<h2>1. Connect to your EC2 Instance<\/h2>\n<p>For instructions on how to connect to your instance, <a href=\"https:\/\/docs.aws.amazon.com\/AWSEC2\/latest\/UserGuide\/EC2_GetStarted.html#ec2-connect-to-instance-linux\">check Amazon&#8217;s guide here<\/a>.<\/p>\n<p>Once connected, navigate to your server&#8217;s private key store via <code>\/etc\/pki\/tls\/private\/<\/code>.<\/p>\n<h2>2. Generate New Private Key<\/h2>\n<p>To create a new 2048-bit RSA private key, run the following command:<\/p>\n<p><code>[ec2-user ~]$ sudo openssl genrsa -out custom.key<\/code><\/p>\n<h2>3. Create the CSR from the key<\/h2>\n<p>After generating the private key, run the following command to create the CSR:<\/p>\n<p><code>[ec2-user ~]$ sudo openssl req -new -key custom.key -out csr.pem<\/code><\/p>\n<p>OpenSSL will then open a new window for filling out the certificate request. The following fields are required:<\/p>\n<ul>\n<li>Country: 2-letter ISO abbreviation for your country.<\/li>\n<li>State\/Province: The name of the state, province, or region within your country where your organization is located. Do not abbreviate this name.<\/li>\n<li>Locality: The city or locality where you are located.<\/li>\n<li>Organization Name: The full legal name of your organization. (For non-organization certificates, you can fill this field with any relevant info, such as your domain name, or N\/A)<\/li>\n<li>Common Name: The domain name or public IP address to be secured by the SSL certificate, i.e. <em>www.domain.com<\/em>. For a single-domain wildcard SSL certificate, the domain should be formatted like <em>*.domain.com<\/em>.<\/li>\n<\/ul>\n<p>The organization unit and email address fields are typically not required in your CSR.<\/p>\n<h3>CSR Challenge Phrase<\/h3>\n<p>OpenSSL may prompt you to set a challenge phrase or password on the CSR. We do not recommend setting a challenge phrase.\u00a0<\/p>\n<h2>4. Check the CSR Output<\/h2>\n<p>The CSR will finally be generated as a .pem type file, which can be opened in a text editor like Notepad. You can open this file and copy and paste the full code, including the <code>-----BEGIN CERTIFICATE REQUEST-----<\/code> header and <code>-----END CERTIFICATE REQUEST-----<\/code> footer, into your SSL order generation form.\u00a0<\/p>\n<p><a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3327\" src=\"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png\" alt=\"\" width=\"566\" height=\"397\" srcset=\"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png 566w, https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR-300x210.png 300w, https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR-50x35.png 50w, https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR-60x42.png 60w, https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR-35x25.png 35w\" sizes=\"auto, (max-width: 566px) 100vw, 566px\" \/><\/a><\/p>\n<h2>5. Validation and Installation<\/h2>\n<p>After you have received your CSR, and have enrolled your order, your certificate will enter the validation process with the issuing Certificate Authority (CA) and require the certificate requester to complete some form of validation. For information regarding the different levels of the validation process and how to satisfy the industry requirements, <a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-validation\/\">reference our validation articles<\/a>.<\/p>\n<p>After you complete the validation process and receive the trusted SSL Certificate from the issuing Certificate Authority (CA), proceed to the next step using our <a href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-install\/how-to-install-an-ssl-tls-certificate-in-amazon-ec2-aws\/\">SSL Installation Instructions for Amazon EC2 (AWS)<\/a>.\u00a0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>To learn more about CSRs and the importance of your private key, reference our Certificate Signing Request (CSR) Overview article. If you already generated the CSR and received your trusted SSL certificate and need help with installation, reference our Amazon EC2 server SSL Installation Instructions. To create a CSR on&#8230;<\/p>\n","protected":false},"author":1,"comment_status":"closed","ping_status":"closed","template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"ht-kb-category":[23],"ht-kb-tag":[],"class_list":["post-3353","ht_kb","type-ht_kb","status-publish","format-standard","hentry","ht_kb_category-ssl-generate"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>How to Generate a CSR for Amazon EC2 (AWS) - Knowledge Base<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How to Generate a CSR for Amazon EC2 (AWS) - Knowledge Base\" \/>\n<meta property=\"og:description\" content=\"To learn more about CSRs and the importance of your private key, reference our Certificate Signing Request (CSR) Overview article. If you already generated the CSR and received your trusted SSL certificate and need help with installation, reference our Amazon EC2 server SSL Installation Instructions. To create a CSR on...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/\" \/>\n<meta property=\"og:site_name\" content=\"Knowledge Base\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/thesslstoredotcom\" \/>\n<meta property=\"article:modified_time\" content=\"2021-07-16T19:46:28+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@thesslstore\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"3 minutes\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How to Generate a CSR for Amazon EC2 (AWS) - Knowledge Base","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/","og_locale":"en_US","og_type":"article","og_title":"How to Generate a CSR for Amazon EC2 (AWS) - Knowledge Base","og_description":"To learn more about CSRs and the importance of your private key, reference our Certificate Signing Request (CSR) Overview article. If you already generated the CSR and received your trusted SSL certificate and need help with installation, reference our Amazon EC2 server SSL Installation Instructions. To create a CSR on...","og_url":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/","og_site_name":"Knowledge Base","article_publisher":"https:\/\/www.facebook.com\/thesslstoredotcom","article_modified_time":"2021-07-16T19:46:28+00:00","og_image":[{"url":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png","type":"","width":"","height":""}],"twitter_card":"summary_large_image","twitter_site":"@thesslstore","twitter_misc":{"Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/","url":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/","name":"How to Generate a CSR for Amazon EC2 (AWS) - Knowledge Base","isPartOf":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/#primaryimage"},"image":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/#primaryimage"},"thumbnailUrl":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png","datePublished":"2021-07-16T19:03:29+00:00","dateModified":"2021-07-16T19:46:28+00:00","breadcrumb":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/#primaryimage","url":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png","contentUrl":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2021\/06\/sampleCSR.png","width":566,"height":397},{"@type":"BreadcrumbList","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/ssl-generate\/amazon-ec2-aws\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.thesslstore.com\/knowledgebase\/"},{"@type":"ListItem","position":2,"name":"How to Generate a CSR for Amazon EC2 (AWS)"}]},{"@type":"WebSite","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#website","url":"https:\/\/www.thesslstore.com\/knowledgebase\/","name":"Knowledge Base","description":"TheSSLstore","publisher":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.thesslstore.com\/knowledgebase\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#organization","name":"The SSL Store\u2122","url":"https:\/\/www.thesslstore.com\/knowledgebase\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#\/schema\/logo\/image\/","url":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2017\/04\/thesslstore.jpg","contentUrl":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-content\/uploads\/2017\/04\/thesslstore.jpg","width":300,"height":300,"caption":"The SSL Store\u2122"},"image":{"@id":"https:\/\/www.thesslstore.com\/knowledgebase\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/thesslstoredotcom","https:\/\/x.com\/thesslstore","https:\/\/www.linkedin.com\/company\/the-ssl-store","https:\/\/www.youtube.com\/user\/thesslstore"]}]}},"_links":{"self":[{"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/ht-kb\/3353","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/ht-kb"}],"about":[{"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/types\/ht_kb"}],"author":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/comments?post=3353"}],"version-history":[{"count":0,"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/ht-kb\/3353\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/media?parent=3353"}],"wp:term":[{"taxonomy":"ht_kb_category","embeddable":true,"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/ht-kb-category?post=3353"},{"taxonomy":"ht_kb_tag","embeddable":true,"href":"https:\/\/www.thesslstore.com\/knowledgebase\/wp-json\/wp\/v2\/ht-kb-tag?post=3353"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}