篩選依據: OV/EV order forms x 清除
new

ICA certificate chain selection for public OV and EV flex certificates

We are happy to announce that public OV and EV certificates with flex capabilities now support Intermediate CA certificate chain selection.

You can add an option to your CertCentral account that enables you to control which DigiCert ICA certificate chain issues your public OV and EV "flex" certificates.

This option allows you to:

  • Set the default ICA certificate chain for each public OV and EV flex certificate.
  • Control which ICA certificate chains certificate requestors can use to issue their flex certificate.

Configure ICA certificate chain selection

To enable ICA selection for your account, contact your account manager or our Support team. Then, in your CertCentral account, on the Product Settings page (in the left main menu, go to Settings > Product Settings), configure the default and allowed intermediates for each type of OV and EV flex certificate.

For more information and step-by-step instructions, see ICA certificate chain option for public OV and EV flex certificates.

new

DigiCert Services API support for ICA certificate chain selection

In the DigiCert Services API, we made the following updates to support ICA selection in your API integrations:

  • Created new Product limits endpoint
    Use this endpoint to get information about the limits and settings for the products enabled for each division in your account. This includes ID values for each product's default and allowed ICA certificate chains.
  • Added support for ICA selection to public TLS OV and EV flex certificate order requests
    After you configure allowed intermediates for a product, you can select the ICA certificate chain that should issue your certificate when you use the API to submit an order request.
    Pass in the ID of the issuing ICA certificate as the value for the ca_cert_id parameter in the body of your order request

Example flex certificate request:

Example flex certificate request

For more information about using ICA selection in your API integrations, see OV/EV certificate lifecycle – (Optional) ICA selection.

enhancement

我們更新了 OV 和 EV SSL/TLS 憑證訂購表,新增了新的 DCV 驗證法下拉清單。現在,在訂購 OV 和 EV 憑證時,您可以選擇您要用於驗證訂單上的新網域的 DCV 方法。請參閱訂購您的 SSL/TLS 憑證指示。

註:所選擇的 DCV 方法適用於訂單上所有未驗證的網域。提交訂單後,您可以從憑證的「訂單詳細資料」頁面依照網域變更 DCV 方法。請參閱證明對擱置的憑證訂單上的網域擁有控制權指示。

enhancement

我們更新了網域預先驗證表,合併 OV 和 EV 憑證驗證選項。現在,在驗證網域時,使用新統一的網域驗證選項 — OV/EV 網域驗證*。請參閱我們的網域預先驗證:網域控制驗證 (DCV) 方法指示。

註*:OV 和 EV 憑證的網域控制驗證 (DCV) 方法相同 (驗證電郵、DNS TXT 等)。它們之間的唯一差別是網域驗證的有效期間有多長。對於 OV SSL 憑證,需要每 825 天 (約 27 個月) 重新驗證一次組織。對於 EV SSL 憑證,需要每 13 個月重新驗證一次網域。