Need new valid certificate for Comet PoE

The current default Comet KVM certificate is, as you all know, invalid. I need to exchange it with a valid one (long story). My guess is that I would have to replace both(?) files (server.crt and server.key) in /etc/kvmd/user/ssl with “valid” ones. How would I generate such “valid” files please? Where would I get those from?

Yes you need to replace both server.crt and server.key ) in /etc/kvmd/user/ssl
You can use google to find the way to get one. There are various way to get it.