If you don't know what this means, then you don't need one. For my own reference later.
openssl x509 -req -in new_request.csr -CA /etc/pki/CA/certs/ca_estrip.biz.crt -CAkey /etc/pki/CA/private/ca_estrip.biz.key -CAcreateserial -out new_request.crt -days 3000
Okay, send me your csr, lol.
I don't now what it is but I WANT ONE!