# Create a root certificate

##### [Order now](https://puqcloud.com/puqvpncp.php) | [Download](https://download.puqcloud.com/cp/puqvpncp/) | [FAQ](https://faq.puqcloud.com)

<p class="callout warning">If you already have a root certificate ready, use certificate import. More in the certificate[ import instructions](https://doc.puq.info/books/puqvpncp/page/import-the-root-certificate "Import the root certificate") section.</p>

Go to menu item **VPN servers -&gt; IKEv2**

[![image-1670922619439.png](https://doc.puq.info/uploads/images/gallery/2022-12/scaled-1680-/image-1670922619439.png)](https://doc.puq.info/uploads/images/gallery/2022-12/image-1670922619439.png)

You need to fill in the required fields such as:

- Common name
- Organization

Then click the button **Generate ROOT certificate**

After these steps, the **root certificate and private key** will be generated.  
Information about the certificate will be available in the same place.

[![image-1670922926394.png](https://doc.puq.info/uploads/images/gallery/2022-12/scaled-1680-/image-1670922926394.png)](https://doc.puq.info/uploads/images/gallery/2022-12/image-1670922926394.png)

To download the root certificate and private key, you can use the buttons **Download CA certificate** and **Download CA key**

To remove the root certificate, use the **Delete ROOT certificate** button