From August 19th 2020, SECTIGO issues SSL certificates with a maximum lifetime of 398 days (13 months) as specified by CA/Browser consortium. SSL certificates with a longer lifetime must be re-issued annually (free of charge). You'll receive reminders via e-mail. SSL certificates issued before August 19th 2020 remain valid until their planned expiry date. Code Signing & S/MIME certificates are not affected and remain valid until their planned expiry date.

SSL installation, configuration for apache / mod_ssl

#create private key:
openssl genrsa -out www.demo.com.key 4096 -sha256

#Create CSR (Certificate Signing Request):
#common name = domain name, e.g. www.test.com or *.test.com for wildcard ssl
openssl req -new -key www.demo.com.key -out www.demo.com.csr

Examples CSR values:

Country Name(2letter code)[AU]: DE
State orProvince Name(full name)[Some-State]: Bayern
Locality Name(eg,city)[]: Ingolstadt
Organization Name(eg,company)[Internet Widgits Pty Ltd]: MyCompany Ltd
Organizational Unit Name(eg,section)[]:
Common Name(eg,YOUR name)[]: www.domain.de
Email Address[]: admin@domain.de

#Show CSR
cat www.demo.com.csr



=> Use this CSR code to request your SSL certificate in your MyInterSSL panel

 

Apache Config PositiveSSL (SECTIGO):

DocumentRoot /home/user/www/www.demo.com
ServerName www.demo.com
ServerAlias demo.com
SSLEngine on
SSLCertificateFile /home/user/ssl/www.demo.com.crt
SSLCertificateKeyFile /home/user/ssl/www.demo.com.key
SSLCertificateChainFile /home/user/ssl/www.demo.com.ca-bundle

 

Apache Config RapidSSL (DIGICERT):

DocumentRoot /home/user/www/www.demo.com
ServerName www.demo.com
ServerAlias demo.com
SSLEngine on
SSLCertificateFile /home/user/ssl/www_demo_com.crt
SSLCertificateKeyFile /home/user/ssl/www_demo_com.key
SSLCertificateChainFile /home/user/ssl/www_demo_com_12345678DigiCertCA.crt
 

 

Was this answer helpful?

 Print this Article

Also Read

COMODO PositiveSSL: Installing SSL certificates including intermediate (ca_bundle) certificate on nginx

Note: When placing your CSR inside the MY INTERSSL account, please choose server type...

Can i obtain a SSL certificate for a server with dynamic IP / DNS / DynDNS address? What about synology.me, myqnapcloud.com, dyndns.org subdomains?

Yes, it is possible to obtain a SSL certificate for dynamic IP based servers. For mail...

How to export an existing SSL certificate from Windows IIS and reuse it on Linux (convert .PFX to .KEY and .CRT)

1) In Windows, right click on the SSL certificate and export to .PFX 2) On Linux, convert the...

GEOTRUST RapidSSL: Installing SSL certificates including intermediate (ca_bundle) certificate on nginx

Note: When placing your CSR inside the MY INTERSSL account, please choose server type...

How can i verify my SSL certification?

Please use the tools from our SSL Tools site which offer you all kinds of SSL checker tools for...