Sign from a CA
Issue a certificate signed by an existing CA: new key pair or CSR, leaf or intermediate CA, with a ready-to-use fullchain.
1. Certificate authority
CA certificate
Everything is decoded locally in your browser, no data is sent.
CA private key (unencrypted PKCS#8)
Everything is decoded locally in your browser, no data is sent.
2. Subject
Load the CA first (step 1).