Skip to main content

Request new certificates for unsecured IP/port targets

Go to the Inventory page to install new certificates to any unsecured areas on your web servers, network appliances, or cloud services.

Before you begin

  • To automate certificate installation to a standard host such as a web server, you need a local DigiCert agent installed and running on that host.

  • To automate certificate installation to an endpoint on a network appliance or cloud service, you need a DigiCert sensor installed on your network with a connector to that appliance or service.

Request a new certificate

To request certificate issuance and installation to an unsecured IP/port target on one of your systems:

  1. From the DigiCert​​®​​ Trust Lifecycle Manager main menu, select Inventory.

  2. From the dropdown at top, open the Load view menu. Load the Unsecured system view or one of your saved custom views of unsecured hosts.

  3. Locate the desired automation target, hover the IP/FQDN column for it, and select the icon to "Request a certificate".

    • The IP/port target you select must have an automation status of Configured to request a certificate on it. If not, check the agent configuration or sensor-based connector for it.

  4. Fill in the Automation request form:

    • Choose profile: Select the certificate automation profile to use.

    • Certificate information: Add the common name and any additional order options for the certificate.

      Atenção

      For agent-based automation on Apache, Nginx, or Tomcat web servers, the common name must match an existing site in the web server configuration otherwise the certificate will get issued but the install will fail.

    • Schedule certificate automation: Select whether to request the certificate now or schedule it for a later date and time.

    • Auto-renew: Select any auto-renewal options for the certificate. These options will apply to this certificate only and override any auto-renew options configured in the certificate profile.

    • Scripts (agent-based automations only): Select from available pre- or post-installation scripts to run on a one-time basis for this automation event. These override any similar scripts in the agent configuration. To learn more, see Agent scripts.

    • Tags: Apply one or more tags to the issued certificate to help identify it in Trust Lifecycle Manager for management and tracking purposes.

    • Select the checkbox at bottom to acknowledge acceptance of the Certificate Services Agreement.

  5. Select Submit to schedule the certificate automation request.