Creating a certificate
Written by
Updated at August 6, 2026
Warning
Yandex IoT Core is no longer available to new users.
Current users can create resources until November 1, 2026. Afterwards, the service will go read-only and cease to operate on December 1, 2026. For more information on the timing and procedure, see Service shutdown.
Devices require X.509 certificates to communicate with each other. If you do not have a certificate, you can create one, e.g., with OpenSSL
To create a certificate, install OpenSSL and run the following command in the command line:
openssl req -x509 \
-newkey rsa:4096 \
-keyout key.pem \
-out cert.pem \
-nodes \
-days 365 \
-subj '/CN=localhost'
Where:
-x509: X.509 certificate.newkey: Encryption algorithm.-keyout: File to write the private key to.-out: File to save the certificate to.-nodes: Flag to use when you do not need to encrypt the public key.-days: Certificate validity period, in days.-subj: Request subject.