Create Root CA (Done once)
Create Root Key
Attention: this is the key used to sign the certificate requests, anyone holding this can sign certificates on your behalf. So keep it in a safe place!
openssl genrsa -des3 -out rootCA.key 4096
To enable the KSM on boot in Debian you I executed these steps:
ksmtunedwithout all the QEMU dependencies: