If multiple accelerated domain names share the same SSL certificate, you can deploy it to all of them at once through the Alibaba Cloud CDN console—no per-domain configuration needed.
Billing
HTTPS secure acceleration is a value-added service billed by the number of HTTPS requests. Data transfer plans cannot offset these fees. For pricing details, see Billing of HTTPS requests for static content.
Prerequisites
Before you begin, make sure you have:
An SSL certificate purchased from Certificate Management Service
One or more domain names added to Alibaba Cloud CDN
Only certificates purchased from Alibaba Cloud Certificate Management Service support batch deployment through the CDN console. Certificates issued by a third-party certificate authority (CA) must be configured per domain name. For details, see Configure an SSL certificate.
Deploy or renew an SSL certificate
Log on to the Alibaba Cloud CDN console.
In the left-side navigation pane, click HTTPS Center.
On the Certificate Center page, click Add Certificate.
-
On the Add Certificate page, configure the following parameters.
Parameter
Description
Certificate Source
Only SSL Certificates Service is supported. Select a certificate purchased from Certificate Management Service.
Certificate Name
Select the certificate to deploy.
Certificate (Public Key)
The PEM-encoded public key. For certificates purchased from Certificate Management Service, the system retrieves this automatically.
Private Key
The PEM-encoded private key. For certificates purchased from Certificate Management Service, the system retrieves this automatically.
Click Next.
-
Select the domain names to associate with the certificate.
ImportantIf a selected domain name already has a certificate, the existing certificate is replaced by the one selected in this step. When Certificate Source is set to SSL Certificates Service, you can deploy or renew the certificate for multiple domain names at once.

Click OK to deploy or update the certificate.
(Optional) To enable end-to-end HTTPS encryption, configure POPs to redirect requests to origin servers over HTTPS. Origin servers must support HTTPS. For details, see Configure the origin protocol policy.
Verify the certificate deployment
The certificate takes effect within 1 minute of deployment. To confirm HTTPS is active, access a resource on the accelerated domain name over HTTPS. A lock icon in the browser address bar confirms that HTTPS secure acceleration is working.

View certificate details
Log on to the Alibaba Cloud CDN console.
In the left-side navigation pane, click HTTPS Center.
On the Certificate Center page, click the certificate you want to view.
The page shows the SSL certificate details for the domain name. The private key is not displayed. Keep your certificate information confidential.
FAQ
API reference
|
API |
Description |
|
Creates a certificate signing request (CSR). |
|
|
Queries certificate information for an accelerated domain name. |
|
|
Enables, disables, or modifies the certificate for a domain name. |
|
|
Configures an SSL certificate for a specified domain name. |
|
|
Queries accelerated domain names by SSL certificate. |
|
|
Queries detailed information about an SSL certificate. |
|
|
Queries certificates. |
|
|
Queries information about a specified SSL certificate. |
|
|
Queries SSL certificate information within your Alibaba Cloud account. |
|
|
Queries the number of domain names with expiring or expired SSL certificates. |
|
|
Enables or disables a ShangMi (SM) certificate for a domain name. |
|
|
Queries SM certificates for an accelerated domain name. |
|
|
Queries details about an SM certificate. |