The Certificate Token lets you enroll an x509 ceritificate by the given CA.

Token data

{{ CATemplates[form.ca].templates[form.template] }}

The server will create the private RSA key and store it in the database. If want to create the key pair client side, uncheck this option.

The RSA keys will be generated in the browser. You will be taken to a new browser window, where you can create the Certificate Request. The private key remains in your browser and you will be able to install the certificate to the browser.

Microsoft Internet Explorer is not supported.