Sorry about the last message it was user error on my part. Please disregard the previous message, as it was incomplete. This is the finished version... I'm trying to get a handle on what needs to be done to get a commercial product I just started administrating to provide ssl access to three different services. Below is an edited quote from the operations guide: The name of a file containing a PKCS 5 password-encrypted, formatted private key, followed by DER formatted certificates defining the private key and certificate chain for the servers. The last certificate in the file is the root certificate. "_____Begin" and "_____End" PEM syntax delimits the encrypted private key and certificates. I have already looked at the openssl man page and through the mailing list archive and even the RSA crypto faq, but I couldn't find answers to the following questions. It seems that when generating a private key pkcs#10 is used. I don't see any mention to pkcs#5. How would I go about generating a pkcs#5 private key? And finally, I have only limited experience with openssl and personal servers so my next questions is what is meant by "certificate chain" and how does one create the chain? Thanks in advance for any information. Aaron ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]