On 31 Jan 2020, at 01:25, Douglas Morris <dougbmorris@xxxxxxxxx> wrote: Interesting. I think I misunderstood this explanation about the -signkey <file> option: "This option causes the input file to be self signed using the supplied private key." Correct - a CSR is generally signed by the party submitting it - thus proving that he or she has access to their own private key. Dw. |