Renewals

Renewing an SSL Certificate means purchasing a new license period to extend your coverage beyond your current license expiry date. This is a separate process from reissuing your SSL Certificate, which provides a replacement SSL Certificate within your existing license period at no additional cost.

Renew Your SSL Certificate Reissue Your SSL Certificate

If your SSL Certificate has expired but your license period is still active, you do not need to renew. Instead, you should reissue your SSL Certificate through the tracking system to obtain a replacement with updated validity. Learn About Maintaining Your SSL Certificate Protection 🔗

Renewal vs Reissuance

Understanding the difference between renewal and reissuance helps ensure you take the correct action and avoid unnecessary purchases.

Renewal involves purchasing a new SSL Certificate license when your existing license period has expired or is approaching expiry. This is a chargeable transaction that extends your coverage for a new validity period of your choice.

Reissuance involves obtaining a replacement SSL Certificate within your existing license period. This is available at no additional cost and provides a new SSL Certificate with the maximum allowable validity up to your remaining license period. Explore Our Tracking System 🔗

The Renewal Process

Renewing an SSL Certificate follows the same procedure as obtaining a new SSL Certificate. When you renew, you will need to replace your existing SSL Certificate, Private Key, and Intermediate Certificates within your hosting control panel or server.

When renewing, you benefit from being able to test and install your new SSL Certificate parallel to your existing SSL Certificate. This allows you to verify the installation before your current SSL Certificate expires.

Important : Do not leave your renewal until the last day. Order queuing or processing delays may prevent timely issuance. Renew and replace your SSL Certificate at least 14 days before your existing license expires.

License Validity Periods

SSL Certificate licenses can be purchased for validity periods of up to five years. When an SSL Certificate is issued, it will contain a validity date for a period as per industry requirements, which is currently a maximum of approximately 398 days.

During a multi-year license, you will need to reissue your SSL Certificate periodically to maintain continuous coverage. Each reissuance provides a new SSL Certificate with the maximum allowable validity up to your remaining license period. Learn About SSL Certificate Validity Periods 🔗

Subscriptions

If you have an automatic protection plan with Trustico® your SSL Certificate license will renew automatically each month or year. You do not need to worry about purchasing a renewal with an automatic protection plan.

Important : Automatic protection plans handle license renewal only. You are still responsible for reissuing your SSL Certificate when it approaches its maximum validity period to maintain a current SSL Certificate on your server.

Reissue Your SSL Certificate

For customers who prefer fully automated management including automatic reissuance, Trustico® offers Certificate as a Service (CaaS) which handles the entire SSL Certificate lifecycle without manual intervention. Learn About Certificate as a Service (CaaS) 🔗

Best Practices

Tip : Generate a new Certificate Signing Request (CSR) and Private Key when renewing your SSL Certificate. Fresh cryptographic keys reduce the risk associated with potential key compromise over time.

Avoid using an existing Certificate Signing Request (CSR) as this will ensure your Private Key matches the SSL Certificate that is issued. If you have generated your new Certificate Signing Request (CSR), you can proceed to the renewal options.

Certificate Signing Request

A Certificate Signing Request (CSR) is required to order an SSL Certificate. The Certificate Signing Request (CSR) is generated from within your hosting control panel, web server software, or server operating system.

Trustico® provides resources to assist with creating your Certificate Signing Request (CSR) for various platforms and server configurations.

Certificate Signing Request (CSR)

If you prefer not to generate your own Certificate Signing Request (CSR), the Trustico® AutoCSR service can automatically generate one for you during the order process. Learn About Certificate Signing Requests (CSR) 🔗

Install SSL Certificate

After your renewal SSL Certificate has been issued, you will need to install it on your server along with the corresponding Intermediate Certificates. Installation procedures vary depending on your hosting control panel or server software.

Trustico® provides comprehensive installation guides for various platforms and server configurations.

Installation Instructions

If you would prefer assistance with your renewal, the Trustico® support team can provide additional information on how to complete your order and install your renewal SSL Certificate. View Our Support Resources 🔗

Microsoft Windows Server Warning

Warning : Do not use the "Renew SSL Certificate" option within Internet Information Services (IIS). This built-in function has known limitations that may cause the renewal to fail. Instead, generate a new Certificate Signing Request (CSR) and install your renewal SSL Certificate as a new installation.

SSL Certificate Works on WWW but Not Root Domain : Troubleshooting Guide

SSL Certificate Works on WWW but Not Root Domai...

Several server configuration problems can cause SSL Certificates to work on the www version but fail on the non-www version of a domain. Understanding these causes helps identify the specific...

SSL Certificate Works on WWW but Not Root Domai...

Several server configuration problems can cause SSL Certificates to work on the www version but fail on the non-www version of a domain. Understanding these causes helps identify the specific...

Understanding SSL Certificate File Formats and Extensions

Understanding SSL Certificate File Formats and ...

SSL Certificate files can be broadly categorized into three main types based on how the data is encoded and stored. Understanding these categories will help you identify which format you...

Understanding SSL Certificate File Formats and ...

SSL Certificate files can be broadly categorized into three main types based on how the data is encoded and stored. Understanding these categories will help you identify which format you...

Understanding the AutoCSR Service for SSL Certificate Orders

Understanding the AutoCSR Service for SSL Certi...

Learn how AutoCSR works, compare it to hosting company practices, find out when automated credential generation is appropriate versus generating your own CSR. Covers security considerations including the Trustico® non-retention...

Understanding the AutoCSR Service for SSL Certi...

Learn how AutoCSR works, compare it to hosting company practices, find out when automated credential generation is appropriate versus generating your own CSR. Covers security considerations including the Trustico® non-retention...

What Is Encrypted Server Name Indication (ESNI)? How Encrypted Client Hello (ECH) Protects Your Privacy

What Is Encrypted Server Name Indication (ESNI)...

The limitations of Encrypted Server Name Indication (ESNI) led to its evolution into Encrypted Client Hello (ECH) in 2020. Encrypted Client Hello (ECH) addresses the shortcomings of its predecessor while...

What Is Encrypted Server Name Indication (ESNI)...

The limitations of Encrypted Server Name Indication (ESNI) led to its evolution into Encrypted Client Hello (ECH) in 2020. Encrypted Client Hello (ECH) addresses the shortcomings of its predecessor while...

Transport Layer Security (TLS) and Cybersecurity

Transport Layer Security (TLS) and Cybersecurity

Every time a browser connects to a website using Hypertext Transfer Protocol Secure (HTTPS), Transport Layer Security (TLS) encrypts the connection to protect data from interception and tampering.

Transport Layer Security (TLS) and Cybersecurity

Every time a browser connects to a website using Hypertext Transfer Protocol Secure (HTTPS), Transport Layer Security (TLS) encrypts the connection to protect data from interception and tampering.

How to Find Your SSL Certificate Private Key

How to Find Your SSL Certificate Private Key

Private keys are generated simultaneously when you create a Certificate Signing Request (CSR) for your Trustico® SSL Certificate. This process creates a mathematically linked pair consisting of a public key...

How to Find Your SSL Certificate Private Key

Private keys are generated simultaneously when you create a Certificate Signing Request (CSR) for your Trustico® SSL Certificate. This process creates a mathematically linked pair consisting of a public key...

1 / 6