Enterprise (OV) / Advanced (EV) Certificate Purchase and Issuance Process
Summary: Purchase Certificate -> Complete Information -> Upload Company Sealed Confirmation Letter -> Background Company Information Review -> Domain Verification (DNS / File Verification) -> Issue Certificate
Step1: Purchase a new certificate
Ucloud homepage -> Dashboard -> All -> Certificate management USSL > Purchase certificate
For detailed information, refer to the Purchase Certificate guide.
Step2: Complete information
After the purchase, you will see a certificate waiting for information to be completed, click on [Complete Information] to submit the relevant content.
For detailed information, refer to the Complete Information guide.
Step3: Upload company stamped confirmation letter
Attachment Information (OV, EV Certificates)
OV, EV certificates require the completion of basic information, then the attachment information needs to be uploaded. This step mainly verifies your organization (Enterprise) information. According to different CA centers, the required attachments can be classified into two categories (submit one category of attachment information is sufficient):
Confirmation Letter
Download the confirmation letter attachment table, fill in the relevant information and upload it.
Application Information
The certificate application form, service agreement form, business license copy, identity card front and back, etc. need to be provided sequentially.
Step4: Manual Review of Company Information (Background, No customer operation is required, just wait)
After the application is submitted, the CA center will complete the review within 3 to 7 working days, and the review period may vary depending on the CA center. During the review period, we will contact the applicant by phone and email, please cooperate with our review. Once the review is passed, we will notify the applicant by SMS and email.
CA Center Review
Once the order status is pending CA manual review, the system will automatically send a domain confirmation email to the relevant contact’s email, please log into the domain ownership email or administrator email to approve the email promptly.
After the domain confirmation email is approved, keep the order contact’s telephone line open to receive the review department’s call.
Review Passed
We will notify the applicant via email and SMS, and the certificate can be downloaded and used as soon as the notification is received.
Review Failed
We will notify the applicant via email and SMS, and the status of the certificate on the dashboard will be changed to review failed, and the information needs to be refilled, and the confirmation letter needs to be re-uploaded.
Step5: Domain ownership verification
Domain Verification Method 1: DNS Resolution Verification
1. Click the verification button
2. Obtain verification information
3. Fill in the verification information
Add a new domain resolution in the domain resolution platform or DNS service provider (such as DNSPOD), as shown below:
4. Resolution Verification
Verify with the local client shell command, nslookup -q=TXT __dnsauth.domain
Method 2: File Verification (related to the server’s own security configuration, and may result in verification mismatches)
-
Create a text file named fileauth.txt according to the verification path and enter the txt value. There should not be any carriage return or linefeed at the end of the file content
-
Make sure that the file fileauth.txt path is consistent with the verification, which can be supplemented by yourself
-
Verification of record value, access https://domain+/.well-known/pki-validation/+fileauth.txt or http://domain+/.well-known/pki-validation/+fileauth.txt,and if you can get the corresponding txt value, it means the file resolution is added successfully
Example:
domain is console.ucloud-global.com; authKey is fileauth.txt, visit: https://console.ucloud-global.com/.well-known/pki-validation/fileauth.txt
If you can get the file content (authValue) 201704181133503c8morpl4g9gk5naytt4dmfwpw50pokoie4d4vjoy259gmbfai, it means the verification is successful.
Step6: Certificate Issuance
Congratulations on the successful application of the certificate, you can download the corresponding certificate file and deploy it to the server after completing the above steps.
For detailed information regarding certificate deployment, refer to the Certificate Deployment guide.
Note: As the verification information for Domain-type (DV) is automatically issued by the issuing system scan, it cannot achieve 100% successful issuance. If it is not issued within 24 hours, for safe use, please upgrade to OV certificate.