Skip to main content

Enable, disable, and configure vulnerability assessment

Before you begin

The Secure Site Pro or Secure Site EV certificate must be issued and active. The vulnerability assessment tool does not appear for orders that are pending issuance, expired, or revoked.

Enable or disable vulnerability assessment

  1. In the CertCentral main menu, go to Certificates > Orders.

  2. Select the Secure Site Pro or Secure Site EV certificate's order number.

  3. On the Order details page:

    • To enable: select Enable vulnerability assessment, read the acknowledgement carefully, and select I agree.

    • To disable: in the Vulnerability assessment dropdown, select Disable.

After enabling, the service begins scanning the domains on the order. The initial scan may take some time. To view results, in the Vulnerability assessment dropdown, select View.

After disabling, the service stops scanning the domains on the order. Vulnerability assessment results and email notifications are no longer available for the order.

Configure email notifications

By default, the vulnerability assessment service sends email notifications to all contacts on the order after each completed scan. Configure when notifications are sent or disable them entirely.

  1. In the CertCentral main menu, go to Certificates > Orders.

  2. Select the Secure Site Pro or Secure Site EV certificate's order number.

  3. On the Order details page, in the Vulnerability assessment dropdown, select Manage email notifications.

  4. In the Manage email notifications window, select one of the following:

    • After every completed scan — includes weekly scans and manual rescans

    • Only when scan finds vulnerabilities

    • Never send email notifications

  5. Select Save.