Order a multi-domain or EV multi-domain SSL certificate

Use these instructions to order a Secure Site Multi-Domain SSL, Secure Site EV Multi-Domain SSL, Multi-Domain SSL, and EV Multi-Domain SSL Certificates.

The major difference between the EV Multi-Domain SSL and Multi-Domain SSL certificates issuance process is the degree of organization verification (validation) DigiCert does for the certificate type. See SSL Certificate Validation Process from DigiCert.

After submitting your order to DigiCert, you will need to complete domain validation for the domains on the order (demonstrate control over the domain) before we can issue your certificate. See Prove control over domains on your SSL certificate order.

When ordering an EV Multi-Domain SSL certificate, you will need to add a verified contact. This step is not required for ordering a Multi-Domain SSL certificate.

Create your CSR

To remain secure, certificates must use at least a 2048-bit key size. For more information and instructions about creating a CSR, see Create a CSR (Certificate Signing Request).

Choose the certificate you want

In the sidebar menu, hover over Request a Certificate and then select the certificate you want to order.

  • Under Business SSL Certificates, click Secure Site Multi-Domain SSL or Secure Site EV Multi-Domain SSL.
  • Under Basic SSL Certificates, click Multi-Domain SSL or EV Multi-Domain SSL.

Add your CSR

We use information included in your CSR to populate corresponding values in the order form: Common Name, Organization Unit, and Organization. If any of this information is not included in the CSR, the field in the form is left blank.

Add your CSR before you start filling out the order form. Adding the CSR after will overwrite or delete information from the specified fields in the form (such as the Organization Unit field).

On the Request "Certificate Name" page, under Certificate Settings, in the Add Your CSR box, use one of these options to add your CSR:

  • Upload your CSR
    Click the Click to upload a CSR link to browse for, select, and open your CSR file.
  • Paste your CSR
    Use a text editor to open your CSR file. Then, copy the text, including the -----BEGIN NEW CERTIFICATE REQUEST----- and -----END NEW CERTIFICATE REQUEST----- tags and paste it in to the Add Your CSR box.

Common Name

After adding your CSR to the order form, we populate the Common Name box with the common name from the CSR.

To add the common name yourself, use one of these options:

Add a recently created domain

Under Common Name, expand Show Recently Created Domains and select one of the available domains.

When selecting a recently created domain, you will need to check and see if the domain validation (demonstrate control over the domain) has been completed. Domain validation must be completed before we can issue your certificate. See Prove control over domains on your SSL certificate order.

Add a new domain

Under Common Name, in the Common Name box, type the domain that you want to secure.

When adding a new domain, you will need to complete domain validation (demonstrate control over the domain) before we can issue your certificate. See Prove control over domains on your SSL certificate order.

Other Hostnames (SANs)

After uploading your CSR, we populate the Other Hostnames (SANs) box with the SANs included in the CSR. You can still remove or add additional SANs as needed.

In the Other Hostnames (SANs) box, enter additional hostnames (for example, mydomain.com, anotherdomain.net, mail.example.org) that you want your certificate to secure.

For Multi-Domain certificates, you get 4 SANs included in the base price of the certificate. For EV Multi-Domain certificates, you get 3 SANs included in the base price of the certificate. Additional SANs (over those included in the base price) increase the cost of the certificate.

Validity Period

Select a validity period for the certificate: 1 year, 2 years, Custom expiration date, or Customer length.

Custom validity periods

Certificate pricing is prorated to match the custom certificate length.

Certificate validity can't exceed the industry allowed maximum lifecycle period for the certificate. For example, you can't set a 900-day validity period for a certificate.

Additional Certificate Options

Expand Additional Certificate Options and provide this information as needed (some information is required; other information is optional):

Signature Hash

In the drop-down list, select a signature hash (for example, SHA-256).

Server Platform

We recommend using the default signature hash (for example, SHA-256).

In the drop-down list, select a signature hash.

Organization Unit(s)

You can leave this box blank. Adding an organization unit (OU) for which the certificate and domain will be used is not required. However, if you include OUs in your order, DigiCert will need to validate them before we can issue your certificate.

If your CSR includes an OU, we populate the Organization Unit box in the order form with that OU information. If you want to use a different OU than the one included in your CSR, click the delete icon (trash can) and add a different one.

To add the OU yourself, in the Organization Unit box, enter the OU.

Auto-Renew

To set up automatic renewal for this certificate, check Auto-renew order 30 days before expiration.

With auto renew enabled, a new certificate order will be automatically submitted when this order nears its expiration date. If your certificate still has time remaining before it expires, DigiCert adds the remaining time from your current certificate to your new certificate (up to 825 days – approximately 27 months).

Auto-Renew can't be used with credit card payments. To automatically renew a certificate, the order must be charged to account balance. You can configure the finance settings for your account on the Finance Settings page (in the sidebar menu, click Finances > Settings).

Organization

To add an organization, click Add Organization and complete one of the options below.

Option 1: Add an existing organization

If your CSR includes an organization currently used in your account, we populate the Organization card in the order form with the organization information. If you want to use a different organization than the one included in your CSR, click the delete icon (trash can) and add a different one.

  1. In the Add Organization window, select Existing Organization.

  2. To see only a list of fully validated organizations, check Hide non-validated organizations.

  3. Select one of the available organizations.
    If have more than nine organizations in your account, use the Organization drop-down list to select an organization.

  4. Click Add.

Option 2: Add a new organization

When adding a new organization, we will need to validate the organization before we can issue your certificate. Also, when you add a new organization, you, the requestor, becomes the organization contact for the newly added organization.

  1. In the Add Organization window, select New Organization.

  2. Add these organization details:

    1. Legal Name
      Enter the organization's legally registered name.
    2. Assumed Name
      Does your organization have a DBA name (doing business as name) that you want to appear on the certificate?
      Yes – Enter it here
      No – Leave this box blank.
    3. Country
      In the drop-down list, select the country where the organization is legally located.
    4. Address 1 and Address 2
      Enter the address where the organization is legally located.
    5. City
      Enter the city where the organization is legally located.
    6. State / Province / Territory/ Region / County
      Enter the state, province, territory, region, or county where the organization is legally located.
    7. Zip / Postal Code
      Enter the zip or postal code for the organization’s location.
    8. Organization Phone Number
      Enter a phone number at which the organization can be contacted.
  3. When you are finished, click Add.

Contacts

When ordering a Secure Site EV or EV SSL Certificate, you need to add a verified EV Contact.

Contacts does not appear on the Secure Site or Standard SSL certificate order form.

EV Verified Users can approve certificate requests for EV SSL Certificates. For a user to be an EV Verified User, they must have a phone number and job title.

Feature Note:

By default, the Allow non-DigiCert users to be used as verified contacts feature is enabled for your account (Settings > Preferences). This feature lets you assign a non-CertCentral account user as the verified EV contact.

With this feature enabled, you see two options: Existing Contact and New Contact. The Existing Contact option lets you assign a CertCentral user as the verified EV contact. The New Contact option lets you enter information for a non-CertCentral account user. Use option 1 or 2.

If you disable this feature, you won't see any options. You can only add CertCentral account users as verified EV contacts. Use Option 1.

To add a verified EV contact, under Contacts, click Add Organization and complete one of the options below.

Option 1: Add an existing contact

If your CSR includes an organization currently used in your account and this same organization already has assigned EV verified contacts, the Verified Contact (for EV) cards are populated with their information (name, title, email, and phone number).

If you want to use a different EV verified contact, click the delete icon (trash can) and add a different one.

  1. In the Add Contact window, select Existing Contact.

  2. In the Contacts drop-down list, select a verified contact for EV.
    Is the contact you selected missing a Job Title or a Phone number? Then, you need to add the missing information. For example, if the contact has a job title but no phone number, you will only need to add the phone number.When adding Job Title and/or Phone for an existing contact, the user profile will be updated with the new information.

    1. In the Job Title box, enter the contact's job title.
    2. In the Phone box, enter the contact's phone number (and Ext).
  3. Click Add.

  4. To add another verified contact, click Add Another Contact and repeat the previous steps as needed.

Option 2: Add New Contact

  1. In the Add Contact window, select New Contact.

  2. Add the contact's First Name, Last Name, and Job Title.

  3. Next, add an Email address and Phone number at which the contact can be contacted for verifying an EV SSL Certificate request.

  4. When you are finished, click Add.

  5. To add another verified contact, click Add Another Contact and repeat the previous steps as needed.

Additional Order Options

Expand Additional Order Options and enter the information below as needed. This section is optional.

Comments to Administrator

Enter any information that your administrator might need for approving your request, about the purpose of the certificate, etc.

These comments are not included in the certificate.

Order Specific Renewal Message:

To create a renewal message for this certificate right now, type a renewal message with information that might be relevant to the certificate’s renewal.

Additional Emails

In the box, enter the email addresses (comma separated) for the people you want to receive the certificate notification emails, such as certificate issuance, duplicate certificate, certificate renewals, etc.

The recipients cannot manage the order, just receive certificate related emails.

Payment Information

Under Payment Information, use one of these payment options to pay for the certificate.

Bill to account balance

Select Bill to account balance to use the funds from your account balance.

If you need to deposit funds before continuing with the certificate order, click the Deposit link. You can't deposit funds in your CertCentral account until you enable the account balance payment method. See Activate the account balance payment method in your account.

Bill to credit card

Select Bill to credit card, then use one of the options below.

Use One of the Credit Cards Listed

Under Selected Card, select one of the available cards.

Add a Different Credit Card

  1. Under Selected Card, select Another Credit Card.

  2. Under Credit Card Details, type your credit card information (i.e., card number, etc.).

Then, under Billing Information, use one of the following to add the billing contact information.

Use account’s billing contact information

To use your account’s billing contacts information for the credit card, check the Same as billing contact for this account box.

Add your billing information

  1. Type your billing information (i.e., Name on card, Country, etc.).

  2. Under Credit Card Options, save or don't save your credit card information:
    Do Not Save the Credit Card
    Uncheck Save this credit card.
    The credit card will not be added to your account. If you want to use the credit card again, you will need to reenter its information in your account.
    Save the Credit Card
    To Save the Credit Card do 1 or more of the tasks below.

    1. Check Save this credit card.
    2. (Optional) Under Card Name, type a name for the credit card that will be helpful when using or identifying the card (i.e., Pay Account Balance).
      Note: If no name is provided, the card name defaults to the card type and last four digits of the card number (i.e., AMEX ####).
    3. (Optional) If you want to use this credit card as the default credit card for your account, check Set this as the default credit card.
      Note: This option does not appear when adding your first credit card. The first credit card added to your account is automatically set as the default credit card.

Complete order

  1. Under Certificate Services Agreement, read through the agreement, making sure you understand it and then, check I agree to the Certificate Services Agreement above.

  2. When you are finished, click Submit Certificate Request.

  3. On the Certificate Orders page (Certificates > Orders), your certificate should be listed with the status of Pending.

Demonstrate control over the domains on your order

After submitting your order to DigiCert, you will need to complete domain validation for the domain on the order (demonstrate control over the domain) before we can issue your certificate. See Prove control over domains on your SSL certificate order.