Skip to main content

Request OV TLS/SSL certificate

Annual plans

As of February 24, 2026, DigiCert TLS/SSL certificate plans are one year by default. Learn more about DigiCert annual plans.

Use these steps to request an organization validated (OV) TLS/SSL certificate in CertCentral. This procedure applies to Enterprise, Partner, and Legacy accounts.

Notice

For Subscription accounts, request DV certificates through your active subscription. In the CertCentral menu, go to My digital trust products > My subscription. Find the relevant subscription and select Actions > Request a certificate. See Request a TLS/SSL certificate from a CertCentral subscription..

Before you begin

  • A CSR must be generated and ready to paste. See Generate a certificate signing request (CSR).

  • The organization must be active and assigned to the correct domains in your account.

  • For immediate certificate issuance, domain and organization validation must be complete before submitting the request.

  • To use the auto-renew option, account balance must be the default payment method. Credit card payment is not supported for automatic renewal. See Set up account credit.

  • For wildcard domains (e.g., *.example.com), HTTP Practical Demonstration DCV methods are not supported. Use DNS TXT record, DNS CNAME record, or email validation instead.

Start a certificate request

For Enterprise, Partner, and Legacy accounts:

  1. In the CertCentral main menu, go to Certificates > Request certificate.

  2. Select OV TLS/SSL certificate.

    Available OV products — Business SSL tab:

    • Secure Site Pro SSL

    • Secure Site OV

    Available OV products — Basic SSL tab: Basic OV

    • GeoTrust TrueBusiness ID OV

    • Thawte SSL Webserver OV

Enter certificate details

  1. Enter the common name (primary domain).

  2. Add any additional subject alternative names (SANs) if required.

    To include both www and non-www versions of the common name at no extra cost, add one version as the common name and the other as a SAN.

  3. Select the certificate validity period.

  4. Paste the certificate signing request (CSR).

  5. Select the server platform.

  6. To enable automatic renewal, select Auto-renew order 30 days before expiration.

Select or add the organization

  1. Select an existing validated organization from the list.

  2. If the organization is not listed, select Add organization and complete the organization details.

If the organization has not been validated for OV, DigiCert must complete organization validation before issuance. The order remains pending until organization validation is complete.

Select a domain validation method

  1. Select a supported DCV method for each domain on the order.

  2. Complete validation from the Order details page.

OV TLS/SSL orders support domain validation reuse within the allowed reuse period. If all domains are prevalidated, DigiCert may issue the certificate immediately after submission without requiring additional validation steps.

Submit the request

  1. Review the order details.

  2. Select the payment method.

  3. Read and accept the Certificate Services Agreement.

  4. Select Submit.

After submission, the certificate remains pending until domain and organization validations are complete. If approval is required and the skip approval step is not enabled, an administrator must approve the request before DigiCert processes the order. DigiCert issues the certificate after all required validations and approvals are complete.

What's next

Manage pending orders to monitor the status of your submitted request and complete any outstanding validation steps