A computer name in the following format: computer.contoso.com, Email. After decoding base64String, the value must be valid Abstract Syntax Notation One (ASN.1). So I want to generate a self signed certificate that is bound to a IP address. Select Computer Account. If the private key is managed by a legacy CSP, the value is KeyExchange or Signature., GUID. The acceptable values for this parameter are: The default value, None, indicates that this cmdlet uses the default value from the underlying KSP or CSP. The acceptable values for this parameter are: The value, None, indicates that this cmdlet does not include the KeyUsage extension in the new certificate. Specifies how a hardware key associated with the new certificate may be used. An appended GUID string makes the container name unique. I have found this answer, but it doesn't seem to work when trying to create a wildcard certificate. Next, I used the SSL certificate in a binding on my IIS server. Go to File > Add / Remove Snap In. If you do not specify this parameter, this cmdlet creates a new key. I have generated a self signed certificate using the command => keytool -genkey -keyalg RSA -alias selfsigned -keystore demo1keystore.jks -storepass ywkeystore@789 -validity 360 -keysize 2048 To add to the trust store read by chrome =>. After decoding hexidecimalString, the value must be valid ASN.1. Delegation may be required when using this cmdlet with Windows PowerShell remoting and changing user configuration. The method I am using is IIS 7.5 -> Click Machine Name -> Click Server Certificates -> Click Open Feature -> Create Self Signed Certificate How are SSL certificate server names resolved/Can I add alternative names using keytool? Do you remember what version and OS you used for PowerShell?

