Generating Certificates using a Self-Defending KMS key