wget supweb.synology.com/support_web/kc_tool/how_to_gen_cert_for_kmip_services/gen_kmip_certs.sh
bash gen_kmip_certs.sh kmip_certs
The second parameter kmip_certs is the name of a shared folder the script will create to store the certificates
/volume1/kmip_certs to your local computer you use to access your DSMs through your web browser, after which you can remove the shared folder and it's contentca-key.pem ca.pem client-fullchain.pem client-key.pem client.pem server-fullchain.pem server-key.pem server.pem
server-key.pemserver.pemclient.pemca.pemclient-key.pemclient.pemca.pem and click Next, they client will not attempt to connect to the server