Generate a cert request and sign the CSR with socket's CA certpost https://example.com/mtls-ca/socket/{socket_dnsname}/csr