筛选方式: OV/EV order forms x 清除
new

ICA certificate chain selection for public OV and EV flex certificates

We are happy to announce that public OV and EV certificates with flex capabilities now support Intermediate CA certificate chain selection.

You can add an option to your CertCentral account that enables you to control which DigiCert ICA certificate chain issues your public OV and EV "flex" certificates.

This option allows you to:

  • Set the default ICA certificate chain for each public OV and EV flex certificate.
  • Control which ICA certificate chains certificate requestors can use to issue their flex certificate.

Configure ICA certificate chain selection

To enable ICA selection for your account, contact your account manager or our Support team. Then, in your CertCentral account, on the Product Settings page (in the left main menu, go to Settings > Product Settings), configure the default and allowed intermediates for each type of OV and EV flex certificate.

For more information and step-by-step instructions, see ICA certificate chain option for public OV and EV flex certificates.

new

DigiCert Services API support for ICA certificate chain selection

In the DigiCert Services API, we made the following updates to support ICA selection in your API integrations:

  • Created new Product limits endpoint
    Use this endpoint to get information about the limits and settings for the products enabled for each division in your account. This includes ID values for each product's default and allowed ICA certificate chains.
  • Added support for ICA selection to public TLS OV and EV flex certificate order requests
    After you configure allowed intermediates for a product, you can select the ICA certificate chain that should issue your certificate when you use the API to submit an order request.
    Pass in the ID of the issuing ICA certificate as the value for the ca_cert_id parameter in the body of your order request

Example flex certificate request:

Example flex certificate request

For more information about using ICA selection in your API integrations, see OV/EV certificate lifecycle – (Optional) ICA selection.

enhancement

我们更新了 OV 和 EV SSL/TLS 证书订购单,新增了 DCV 验证方法下拉列表。从现在起,在订购 OV 和 EV 证书时,可以选择在验证订单上的新域时需要使用的 DCV 方法。请参阅我们的订购 SSL/TLS 证书说明。

注意:所选的 DCV 方法适用于订单上的所有未验证的域。提交订单后,可以在证书的“订单详细信息”页面上更改各个域的 DCV 方法。请参阅我们的证明对待处理证书订单上所列域的控制权说明。

enhancement

我们更新了域预验证表单,整合了 OV 和 EV 证书验证选项。从现在起,在对域进行预验证时,使用新整合的域验证选项—OV/EV 域验证*。请参阅我们的域预验证:域控制验证 (DCV) 方法说明。

注意*:适用于 OV 和 EV 证书的域控制验证 (DCV) 方法相同(验证电子邮件、DNS TXT 等)。它们之间的唯一区别是域验证的有效期不同。对于 OV SSL 证书,需每隔 825 天(大约 27 个月)重新验证域。对于 EV SSL 证书,需每隔 13 个月重新验证域。