This is an old revision of the document!
wget supweb.synology.com/support_web/kc_tool/how_to_gen_cert_for_kmip_services/gen_kmip_certs.sh
bash gen_kmip_certs.sh kmip_certs
The second parameter kmip_certs is the name of a shared folder the script will create to store the certificates
/volume1/kmip_certs to your local computer you use to access your DSMs through your web browser, after which you can remove the shared folder and it's contentserver-key.pemserver.pemclient.pemca.pemca.pem and click OK