Generate a certificate signing request from a certreq policy file
This section explains how to generate a Certificate Signing Request (CSR) from a certreq policy file on the computer where you plan to install Microsoft SQL Server. A public/private key pair is created in your Windows account profile when you generate the CSR file. In the next section, use the KMES to issue a signed certificate from the CSR, which you later associate with the public/private key pair stored in the Windows certificate store.
On the computer where you plan to install Microsoft SQL Server, open a text editor.
Create a new file, then copy and paste in the following:
Save the file with the .inf extension (for example, certreq_policy.inf).
Open either the command prompt or PowerShell.
Go to the directory where you saved the certreq policy .inf file.
Run the following command to generate a certificate signing request (CSR) from the certreq policy .inf file:
Copy the CSR file to the storage medium configured on your KMES Series 3 device.