Generate a Certificate Signing Request (CSR) and private key instantly. Fill in your domain details, download both files and submit the CSR to your Certificate Authority.
A Certificate Signing Request is the file you send to a certificate authority to get an SSL/TLS certificate. It holds your public key and the details that will appear in the certificate, mainly the domain names, and it is signed with your private key to prove you hold it. The private key itself is never sent to the authority.
Save the private key as soon as it is generated and store it where only your server administrators can read it. If it is lost, the certificate is useless and must be reissued. If it leaks, anyone can impersonate your site until the certificate is revoked. Never email it or paste it into a support ticket. For production servers, generating the key directly on the server, for example with OpenSSL, means it never exists anywhere else.
Check the request with the CSR decoder before you submit it. When the certificate arrives, confirm it pairs with your key using the certificate key matcher, then verify the live site with the SSL checker.