From August 19th 2020, SECTIGO issues SSL certificates with a maximum lifetime of 398 days (13 months) as specified by CA/Browser consortium. SSL certificates with a longer lifetime must be re-issued annually (free of charge). You'll receive reminders via e-mail. SSL certificates issued before August 19th 2020 remain valid until their planned expiry date. Code Signing & S/MIME certificates are not affected and remain valid until their planned expiry date.

Tomcat CSR generation and CRT import (Java Keystore .JKS), Matrify, GlassFish, Wildfly ...

keytool -genkey -alias server -keyalg RSA -keysize 2048 -keystore www.domain.com.jks
keytool -certreq -alias server -file csr.txt -keystore www.domain.com.jks
cat csr.txt


When it asks for first and last name, this is NOT your first and last name, but rather it is your Fully Qualified Domain Name for the site you are securing (example: www.yourdomain.com). If you are ordering a Wildcard Certificate this must begin with the * character. (example: *.yourdomain.com)


After you have placed the CSR in the interssl account and the certificate has been validated and issued, you can import it into the keystore, e.g. 

keytool -import -trustcacerts -alias server -file your_site_name.p7b -keystore your_site_name.jks

In case you didn't receive a .p7b file, you can also import the .ca-bundle and .crt files like this:  
keytool -import -trustcacerts -keystore www.domain.com.jks -alias ca-bundle -file www_domain_com.ca-bundle
keytool -import -trustcacerts -keystore www.domain.com.jks -alias server -file www_domain_com.crt

 

You may find further details please on the COMODO CSR generation page:
https://support.comodo.com/index.php?/Default/Knowledgebase/Article/View/1079/0/tomcat-csr-generation

For GlassFish specific details please have a look at:
https://support.comodo.com/index.php?/comodo/Knowledgebase/Article/View/816/37/
http://www.serveridol.com/2012/02/12/how-do-i-install-ssl-on-glassfish-server/
https://blogs.oracle.com/enterprisetechtips/using-ssl-with-glassfish-v2


Was this answer helpful?

 Print this Article

Also Read

How do i create /.well-known/pki-validation/... ?

For File Based Authentication, please create a folder structure "/.well-known/pki-validation/"...

SSL Zertifikat für Elopage: Beantragung und Installation

InterSSL hat bereits viele Kunden mit SSL Zertifikaten beliefert, die eine Elopage betreiben....

Windows Azure Website: Create CSR & Install SSL Certificate

DigiCert is offering detailed instructions for CSR creation and SSL installation for Windows...

How long does it take until HTTP based authentication is verified?

Typically HTTP-based authentication will be done within a couple of minutes. If you think the...

Tomcat GlassFish SSL CSR creation & installation example

cd /opt/glassfish4/glassfish/domains/domain1/config keytool -list -v -alias s1as -keystore...