Click the green icon (Wrench for RaQ4, Pencil for XTR) next to the SSL The Intermediate CA certificates are contained within the 'ca-bundle' file that. How to set up Comodo SSL at Hostinger? · Step 1 - Activate the order · Step 2 - Verify domain · Step 3 - Download and install certificate. Comodo CA is the world's largest certificate authority with over TLS/SSL certificates the leading certificate authority, we're here to.

From the Issuer list, select Self. In the Common Name. This is typically the name of a web site, such as www. In the Division. In the Organization. In the Locality. In the or State or Province. From the Country. In the E-mail Address. In the Lifetime. In the Subject Alternative Name. This name is embedded in the certificate for X extension purposes.

By assigning this name, you can protect multiple host names with a single SSL certificate. From the Key Type. From the Curve. In general, longer keys can impact performance but are more secure. Shorter keys result in better performance but are less secure. Click Finished. The name of the self-signed certificate appears in the list of certificates on the system. You can generate a certificate that includes an Elliptic Curve Digital Signature Algorithm ECDSA key type, and then copy it or submit it to a trusted certificate authority for signature.

From the Issuer. In the Challenge Password. In the Confirm Password. Do one of the following to download the request into a file on your system. In the Request Text. For Request File. Follow the instructions on the relevant certificate authority web site for either pasting the copied request or attaching the generated request file. The Certificate Signing Request screen displays.

The generated certificate is submitted to a trusted certificate authority for signature. Creating a FIPS-type self-signed certificate. You can use this task to create a self-signed certificate to authenticate and secure either client-side or server-side HTTP traffic. From the Security Type. Use this task to create a request for a certificate with FIPS type security from a certificate authority.

This displays the list of certificates installed on the system. To request a certificate from a CA, select Certificate Authority. For a self-signed certificate, select Self. Configure the Common Name. Converting a key to FIPS format. Click a certificate name. This displays the properties of that certificate. On the menu bar, click Key. This displays the type and size of the key associated with the certificate. The key is converted and appears in the list as a FIPS key.

After the key is converted, this process cannot be reversed. About SSL file import. Importing a certificate signed by a certificate authority. Before performing this task, confirm that a digital certificate signed by a certificate authority CA is available. You can install an SSL certificate signed by a CA by importing a certificate that already exists on the hard drive of the management workstation.

You can import a private key, a certificate or certificate bundle, or an archive. Click the Import. From the Import Type. For the Certificate Name. If you are importing a new certificate, select Create New. If you are replacing an existing certificate, select Overwrite Existing.

For the Certificate Source. Select the Upload File. Select the Paste Text. Click Import. Importing an SSL key. For the Key Name. Select the Create New. Select the Overwrite Existing. For the Key Source. In the Password. Importing a PKCS-formatted file.

For the Certificate and Key Name. For the Certificate and Key Source. From the Key Security. Importing an archive file. For the Upload Archive File. Click the Load. Exporting an SSL certificate. You perform this task to export an SSL certificate to another device. Click the name of the certificate you want to export. The General Properties screen displays. Click Export. The Certificate Export screen displays the contents of the certificate in the Certificate Text. To obtain the certificate, do one of the following:.

Copy the text from the Certificate Text. At the Certificate File. Click the name of the SM2 certificate you want to export. Viewing a list of certificates on the system. In the Name column, view the list of certificates on the system. Viewing a list of SM2 certificates on the system. Digital SSL certificate properties. The type of certificate content, for example, Certificate Bundle or Certificate and Key. Common name. The common name CN for the certificate. The common name embedded in the certificate is used for name-based authentication.

The default common name for a self-signed certificate is localhost. Expiration date. The date that the certificate expires. If the certificate is a bundle, this information shows the range of expiration dates that apply to certificates in the bundle.

The organization name for the certificate. The organization name embedded in the certificate is used for name-based authentication. The default organization for a self-signed certificate is MyCompany. About certificate bundle management. You can use the bundle manager to automatically update and install certificate authority CA bundles on the system from two sources: local certificate file objects and remote URL resources. By using the Include Bundles.

In addition, you can set the update frequency of the CA bundle, or use a web proxy for downloading the remote URL resources. By default, a newly created CA bundle manager does not create or update the managed CA bundle object. Exceptions are if the CA bundle manager has a positive update interval or is explicitly told to do so since you have set the Update Now.

Creating a new certificate bundle. You can create a new certificate authority CA bundle, and specify bundles and URLs to include or exclude. You can also set the update frequency of the CA bundle, or use a web proxy for downloading the remote URL resources. The resulting bundle file will be named the same as the bundle manager object. By default, a newly created CA bundle manager does not create or update the managed CA bundle object unless the CA bundle manager has a positive Update Interval.

The Bundle Manager List screen opens. From the Include Bundles. In the Include URLs. From the Exclude Bundles. In the Exclude URLs. In the Update Interval. The default value is set to 0. If you want the CA bundle manager to immediately refresh its generated CA bundle from all its sources and recalculate its certificate contents, select the Update Now. The default value is disabled. From the Trusted CA-Bundle. In the Proxy Server. Only HTTP proxy is supported. In the Proxy Server Port.

The default is In the Download Timeout. The value range is from 1 to 1 hour seconds. The default value is 8. The system installs a generated CA bundle file as a certificate-file-object on the system to be used as a trusted CA bundle by other modules. Modifying an existing certificate bundle. You can use the bundle manager to modify an existing certificate authority CA bundle. From the Bundle Manager List. The Properties screen opens showing the selected CA bundle general properties and configuration details.

Select the Update Now. Modify any of the configuration details needed, and click Update. Deleting an existing certificate bundle. Though the last step of installation is different and depends on the web server. For the final steps we assume that our SSL vendor is Comodo. For other brands the last step may differe slightly. Some sellers will ask for CSR before ordering and some will ask immediately after order.

You have two options for generating CSR. The first is to use OpenSSL and the second is to use this online service. I will show you how to use option one — OpenSSL. Basically this command will generate two files. One is CSR yourdomain. After we finish, you can delete the CSR file. Keep the private key secure though. This step depends on the seller. Normally the companies that issue SSL certificates do not sell them directly.

Rather, there are numerous sellers from whom you can purchase SSL certificates. Regardless the seller, you need the CSR generated in step 1 either to place an order or to complete the order. So, your seller at some point will ask for CSR. Afterwards, you will have to confirm that you actually own the domain. For this you need to provide an email address normally it should be admin yourdomain. Once you click the link, your domain is considered verified and you will receive the SSL certificate shortly.

Comodo used to sent these files separately. So you would get 4 different files. For Nginx you need to combine them into a single certificate file. On Linux and Mac you open a terminal and use the cat command. If you get only two files your certificate and a bundled version of the three files normally named as yourdomain.

Installing an intermediate certificate is simple and is typically accomplished in the same way you would install in any other SSL certificate. For instructions on how to download and install a Comodo Intermediate, follow the link below. Download the Comodo Intermediate Certificate. Comodo is a universally trusted Certificate Authority whose roots are included in all major trust stores.

We have instructions on this if needed. This is not a problem, nor will it result in an vulnerability for you or your site. Tip: You can typically save a significant amount by buying your SSL certificate direct instead of through your web hosting company. Compare SSL Certificates. Cheapest Price in the World! Stop browser security warnings right now! Code Signing Certificates Tamper-proof your code.

What are Comodo Root and Intermediate Certificates? Rate this article: 16 votes, average: 2. Securely backup your website to protect against ransomware, hardware corruption and human errors with our reliable backup solution. Redirecting you to. Click if you are not redirected within 5 seconds. Compare SSL Certificates. SiteLock, A Sectigo Company SiteLock secures websites by automatically finding and fixing threats on over 16,, sites. Website Scanning Our website security scan instantly checks your website from malware, viruses and other cyber threats and alerts you to found issues.

Malware Removal Detect and automatically remove malicious content from your website, creating a safe experience for your customers. Web Application Firewall Powerful WAF security to protect against advanced cyberthreats - including the top ten threats that could damage your website. Website Backup Securely backup your website to protect against ransomware, hardware corruption and human errors with our reliable backup solution. Web Security and Signing Certificates.

Protect your business from security threats with our proprietary Web Security Platform. Improve email security by digitally signing and encrypting your communications with our email certificates. Prevent man-in-the-middle attackers, phishing and other types of cyber attacks.

