Expected Begin certificate with a new line
vyos@r1-roll:~$ generate pki ca Enter private key type: [rsa, dsa, ec] (Default: rsa) Enter private key bits: (Default: 2048) Enter country code: (Default: GB) Enter state: (Default: Some-State) Enter locality: (Default: Some-City) Enter organization name: (Default: VyOS) Enter common name: (Default: vyos.io) Enter how many days certificate will be valid: (Default: 1825) Note: If you plan to use the generated key on this router, do not encrypt the private key. Do you want to encrypt the private key with a passphrase? [y/N] -----BEGIN CERTIFICATE----- MIIDnTCCAoWgAwIBAgIUPmVX68h4+0HJAwhs/RoNS6Eh0KYwDQYJKoZIhvcNAQEL BQAwVzELMAkGA1UEBhMCR0IxEzARBgNVBAgMClNvbWUtU3RhdGUxEjAQBgNVBAcM ... -----END CERTIFICATE----