Table of Contents

TLS/SSL Certificates from the CA DigiCert, GeoTrust, Thawte, RapidSSL and GlobalSign can be renewed 90 days prior to expiration without losing their runtime. The renewal of Sectigo, InstantSSL and PositiveSSL is only possible from 30 days before the end of the term. This does not apply to the Basic SSL Certificate, where the runtime is not taken into account at the time of renewal. The contact data can be changed during the renewal.

Start the renewal of the certificates early, as there may be delays in the process, e.g. if the applicant cannot give his consent due to vacation or illness. The new verification, which is necessary when renewing, can also take some time, e.g. if the applicant cannot be reached for verification calls for OV and EV certificates.

Certificate renew

Starting the renew request in the SSL Manager

  • Click Certificate Management in the TLS/SSL Certificates menu group.
  • Select the affected certificate in the list.
  • Click the Renew Certificate button in the toolbar. In the main window the form with all data of the certificate opens.
  • Change CSR key:
    Delete the existing CSR key and insert the new one.
    Note that when copying the CSR code, mark the first line "-----BEGIN CERTIFICATE REQUEST-----" and the last line "-----END CERTIFICATE REQUEST-----" including the lines.
  • Click the Check CSR Key button, even if you do not want to replace the CSR key.

You can use a DigiCert tool to check the correctness of the CSR key beforehand. https://ssltools.digicert.com/checker/views/csrCheck.jsp

  • Confirm the note for DSGVO.
  • Click on Submit to start the new issue.

Start bulk renewals

  • Click Certificate Management in the TLS/SSL Certificates menu group,
  • Select the certificates requiring renewal in the list.
  • In the toolbar, click on the tab for bulk renew. This will open a window with all certificates you have selected.

The certificate details cannot be edited with a bulk renew. The renewal is carried out using the existing data.

  • Click on Accept to start the renewals.

Change the certificate on the server

Change the certificate (Server CRT) and the intermediate certificate (CA CRT) from the certificate administration on the corresponding server.

Tracking the order

In the Order History you can track all current and completed orders.