From August 19th 2020, SECTIGO issues SSL certificates with a maximum lifetime of 398 days (13 months) as specified by CA/Browser consortium. SSL certificates with a longer lifetime must be re-issued annually (free of charge). You'll receive reminders via e-mail. SSL certificates issued before August 19th 2020 remain valid until their planned expiry date. Code Signing & S/MIME certificates are not affected and remain valid until their planned expiry date.

Tomcat GlassFish SSL CSR creation & installation example

cd /opt/glassfish4/glassfish/domains/domain1/config
keytool -list -v -alias s1as -keystore keystore.jks
cp keystore.jks keystore.jks_backup
keytool -delete -alias s1as -keystore keystore.jks
keytool -keysize 4096 -genkey -alias s1as -keyalg RSA -dname "CN=*,O=Company,L=Wattil,S=SG,C=CH" -keypass changeit -storepass changeit -keystore keystore.jks
keytool -list -v -alias s1as -keystore keystore.jks
keytool -certreq -alias s1as -keystore keystore.jks -storepass changeit -keypass changeit -file
#Order SSL certificate with this CSR and copy the certificate .ZIP file as deliverd from COMODO into the current folder
keytool -import -alias COMODORSADomainValidationSecureServerCA -keystore keystore.jks -trustcacerts -file COMODORSADomainValidationSecureServerCA.crt
keytool -import -alias COMODORSAAddTrustCA -keystore keystore.jks -trustcacerts -file COMODORSAAddTrustCA.crt
keytool -import -alias AddTrustExternalCARoot -keystore keystore.jks -trustcacerts -file AddTrustExternalCARoot.crt
keytool -import -alias s1as -keystore keystore.jks -trustcacerts -file STAR_yourdomain_com.crt
keytool -list -v -alias s1as -keystore keystore.jks

Was this answer helpful?

 Print this Article

Also Read

How to securely submit sensitive documents (forms, personal ID, company registration docs) to COMODO? (OV and EV certificates, CPAC Pro, CPAC Enterprise)

In case you are requested to submit sensitive documents (forms, personal id, company documents)...

Retrieving WHOIS contact details for .de Domains will also sohw the owner contact details (Linux command line...

Code Sigining: CSR Generation (how to generate a CSR for Code Signing locally on your computer)

In the past, Code Signing requests automatically created a CSR/KEY pair inside your browser....

Multidomain SAN Upgrade: is it possible to purchase additional SAN slots later?

Yes, it is possible to increase the SAN slot count for an existing multi-domain SSL certificate....

Can you issue SSL certificates for .krd / (Kurdistan - Iraq) domains?

YES, the TLD has been added by GeoTrust / RapidSSL on our request for one of our customers. ;-)