Generate KEY and CSR:
openssl req -new -newkey rsa:2048 -nodes -keyout DOMAIN.key -out DOMAIN.csr
Echo the KEY in PEM format:
openssl rsa -in DOMAIN.key -outform PEM
Echo the CRT in PEM format:
openssl x509 -inform PEM -in DOMAIN.crt
Echo the CA CERTIFICATE CHAIN in PEM format:
(openssl x509 -inform PEM -in COMODORSADomainValidationSecureServerCA.crt; openssl x509 -inform PEM -in COMODORSAAddTrustCA.crt; openssl x509 -inform PEM -in AddTrustExternalCARoot.crt)
Echo the FULL CERTIFICATE CHAIN in PEM format:
(openssl x509 -inform PEM -in DOMAIN.crt; openssl x509 -inform PEM -in COMODORSADomainValidationSecureServerCA.crt; openssl x509 -inform PEM -in COMODORSAAddTrustCA.crt; openssl x509 -inform PEM -in AddTrustExternalCARoot.crt)
For cheap NameCheap wildcard certs from Commodo
Echo the CERTIFICATE CHAIN in PEM format:
(openssl x509 -inform PEM -in COMODOHigh-AssuranceSecureServerCA.crt; openssl x509 -inform PEM -in AddTrustExternalCARoot.crt)