Generate PKCS #10 Hybrid Certificate Signing Request (CSR)

This tool generates two key pairs (primary and alternate) along with a certificate signing request (CSR). The private keys are in PKCS#8 format and DER encoded. The CSR is in PKCS #10 format and DER encoded. Alternate public key and signature data are added as attributes in the CSR. If ML-KEM is selected for the alternate key, the public key is added as an extension request in the CSR. The private keys and CSR are zipped together into a single file for download. Warning: these private keys and CSR should ONLY be used for test and development purposes.


Key Pair



* Note - Both the primary key type and the alternate key type are set to the same value.

Subject Name DNs

Type Value

Standard Extension Requests

Name Critical Value

Custom Extension Requests

OID Critical ASN.1 DER Encoded Data
* only decimals and numeric values allowed
* only decimals and numeric values allowed

Cookie Consent Policy

This website uses cookies. See Privacy Policy
Accept