Before you can apply for a certificate by using Alibaba Cloud Certificate Management Service, you must place an order for SSL certificate instances. The order contains the certificate resources that you require. You can specify a quota on certificates of the specified brand and type. After you complete the payment, you can submit certificate applications to the certificate authority (CA). In this process, the quota that you specify is consumed.

Procedure

  1. Log on to the SSL Certificates Service buy page by using your Alibaba Cloud account.
  2. Select specifications for the certificate instance that you want to purchase based on your business requirements.
    Parameter Description
    Select Brand Select a certificate brand for the certificate instance. The certificate brand is the CA that issues certificates to you.

    For more information about certificate brands, see Supported certificate brands.

    Certificate Category Select a certificate type for the certificate instance.

    For more information about certificate types, see Supported certificate types.

    Domain Type Select the type of the domain names that you want to bind to a certificate. Valid values:
    • Wildcard Domain: If you select this value, you can bind a wildcard domain name to a certificate. For example, if you bind *.aliyundoc.com to a certificate, the system matches domain names such as a.aliyundoc.com and b.aliyundoc.com. However, a.b.aliyundoc.com cannot be matched.
    • Single Domain: If you select this value, you can bind a single domain name to a certificate. Example: www.aliyundoc.com.
    • Multiple Domains: If you select this value, you can bind multiple single domain names to a certificate at a time.
    Domain Names This parameter is required only if you set Domain Type to Multiple Domains. Select the number of domain names that you want to bind to a certificate.
    Certificates Specify the number of certificates that you want to apply for by using the certificate instance.
    Subscription Duration Select the validity period of the certificate service. Valid values:
    • 1 Year: You can use the certificate service for one year. The service provides a certificate whose validity period is one year. The default validity period of a certificate is one year. After the certificate expires, you must place a new order.
    • 2 Years: You can use the certificate service for two years.

      For example, if you set Certificates to 1 and Subscription Duration to 2 Years, the certificate service provides two certificates and a hosting quota of 1. Each certificate has a validity period of one year. If you set Certificates to 2 and Subscription Duration to 2 Years, the certificate service provides four certificates and a hosting quota of 2. Each certificate has a validity period of one year.

      For more information about the certificate hosting feature, see Overview.

    • 3 year: You can use the certificate service for three years. The certificate service provides three certificates and a hosting quota of 2. Each certificate has a validity period of one year.
  3. Click Buy Now and complete the payment.
    After you complete the payment, you can log on to the SSL Certificates Service console and view the certificate instance that you purchased on the Manage Certificates tab of the SSL Certificates page. You can use the tag feature to add a tag to a certificate instance. To add a tag, find the certificate instance and click the Tag icon icon.

    If the certificate quota of the certificate instance is not consumed within a specific period after the payment is complete, you can request a refund for the certificate instance.

What to do next

You can use the purchased certificate instance to submit a certificate application to the CA. After the application is approved, the CA issues the certificate to you.

For more information about how to apply for a certificate, see Apply for a certificate.