OK, now is time to setup your Apache with SSL. First of all be sure that your Apache will be working with SSL.
Create a Certificate Signing Request (CSR) with the server RSA private key
Install mod_ssl package.
Change lines in /etc/httpd/conf.d/ssl.conf so they read next:
SSLCertificateKeyFile /etc/pki/CA/private/my-ca.key Location for your key
After this restart service and try https://security1.setenforce.com, you should accept certificate, so this will work.
All this is OK, but I don't want to insert pass phrase every time I restart service. So I need to do decrypting private key.
Now use the openssl utility to decrypt your key and store it using the original filename
Restart service and you will see that system doesn't need pass phrase to restart.