Ctrl + K
Home›Security Tools›CSR Generator
Free Developer Tool

CSR Generator

Generate a PEM-encoded certificate signing request with a new key pair and configurable certificate subject details.

What is CSR Generator?

Generate a Certificate Signing Request (CSR) for requesting an X.509 certificate from a certificate authority. Enter the certificate subject information, generate a cryptographic key pair, and receive the CSR in PEM format together with the generated private key.

How to use

  1. Enter the domain name and certificate subject details.
  2. Choose the key algorithm and key size when supported.
  3. Generate the key pair and certificate signing request.
  4. Review the generated CSR.
  5. Copy or save the CSR and store the private key securely.

Features

  • PEM-encoded CSR generation
  • Configurable certificate subject
  • Common Name configuration
  • Organization and organizational unit fields
  • Country, state and locality fields
  • Cryptographic key pair generation
  • Browser-side processing
  • Copy generated CSR and private key

Common Use Cases

  • Requesting TLS certificates
  • HTTPS certificate setup
  • Certificate authority requests
  • Development certificate workflows
  • Testing certificate configurations

Example

Input
Common Name: example.com
Organization: Example Inc.
Country: US
Key Algorithm: RSA
Output
-----BEGIN CERTIFICATE REQUEST-----
MIIC...generated CSR...
-----END CERTIFICATE REQUEST-----

FAQ

What is a CSR?

A Certificate Signing Request is a structured request containing certificate subject information and a public key that is signed with the corresponding private key.

Does the generator create a private key?

Yes. The generator creates a key pair as part of the CSR generation process and provides the private key separately from the CSR.

Can I use the generated CSR to request a TLS certificate?

Yes. A properly generated CSR can be submitted to a certificate authority when requesting an X.509 certificate.

Does the tool send the private key to a server?

No. The cryptographic material is generated and processed in the browser and does not need to be uploaded to the server.

Should I share the generated private key?

No. The private key must remain secret. Only the CSR should normally be provided to the certificate authority.