Palo Alto Traps TLS certificate on Amazon EC2?

Has anyone set up TLS syslog on port 6514 on an AWS EC2 Linux server (running Splunk of course)? I can't for the life of me figure out how to request a CA signed SSL-TLS cert from one of the approved authorities and verify that I own that server. Traps requires a CA signed cert to communicate with Splunk.


