openssl genrsa -out root-ca.privkey.pem 2048
openssl req -x509 -new -nodes -key root-ca.privkey.pem -days 100 -out root-ca.cert.pem -subj "/C=US/O=Debug Cert/CN=localhost"
openssl x509 -outform der -in root-ca.cert.pem -out debug_certificate.crt