How to generate a CSR for AWS services

Updated on 28 Oct 2024

For more on CSRs and why your private key matters, see our Certificate Signing Request (CSR) overview. If you have already generated the CSR, received your trusted SSL certificate and need help installing it, see our SSL installation instructions.

1. OpenSSL

For Amazon Web Services we suggest generating your CSR with OpenSSL, which is the software most widely used for SSL work. See our OpenSSL CSR generation instructions for a detailed walkthrough of this step.

2. Check Amazon's documentation

Because Amazon Web Services covers a whole range of hosting products, we suggest reading Amazon's own documentation to understand how SSL is generated, uploaded and configured on each of them. Every AWS customer uses a different set of services, so there is no single answer that fits everyone.

3. Validate and install

Once you have your CSR and have enrolled your order, your certificate enters validation with the issuing certificate authority, which will ask whoever requested the certificate to complete some form of validation. For the different levels of validation and how to satisfy the industry requirements, see our validation articles.

After validation is complete and the certificate authority has issued your trusted SSL certificate, carry on with our Amazon Web Services SSL installation instructions.