Some knowlege from the top of my head

My personal blog

  1. Partially trusting somebody else's Certificate Root (Cross sign)

  2. Using certreq to create selfsigned certificates