![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Run the following command:
- nano /etc/certs/openxpki_democa2/pd.pass
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Type your password.
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Create a signer certificate. For more information, see Creating a signer certificate.
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Check whether the import is successful using openxpkiadm alias --realm democa2.
Note: If you changed the key password of the certificate during certificate creation, update nano /etc/openxpki/config.d/realm/democa2/crypto.yaml.
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Generate the CRLs for the second realm. For more information, see Generating CRL information.
Note: Make sure that you use the correct CA certificate name according to the realm.
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Publish the CRLs for this realm. For more information, see Publishing CRL information.
![](https://publications.lexmark.com/media/ids_assets/images/transparent.png)
Restart the OpenXPKI service using openxpkictl restart.
Sample output
Stopping OpenXPKI
Stopping gracefully, 3 (sub)processes remaining...
DONE.
Starting OpenXPKI...
OpenXPKI Server is running and accepting requests.
DONE.