Issuing a Certificate
Objectiveβ
Issue an SSL/TLS certificate through the Conviso Platform: choose the product, prepare the Certificate Signing Request, provide the organization data your validation level requires, and publish the record that proves you control the domain.
Prerequisitesβ
- The SSL Certificates module enabled for your account, and permission to create certificates. See Before You Start.
- At least one credit with status Available for the product you want to issue. See Certificate Credits.
- Access to publish a DNS record for the domain, to upload a file to its web server, or to receive e-mail at one of its approved addresses β one of the three is required to prove control.
- If you will provide your own CSR, generate it before starting.
Open Inventory > Assets > Certificates and select New Certificate to start the wizard.
The wizard adapts to the product you choose. The Organization step appears only for OV and EV products, and the Review step only for multi-domain products. A single-domain DV certificate goes straight from Configure to Validation.
Step 1: Choose the Productβ
The first step lists the credits you can spend, grouped by product:
| Column | Content |
|---|---|
| Product | The certificate product |
| Type | DV, OV or EV |
| Term | The subscription length, in years |
| Available | How many credits of that product you hold |
| Domains | How many domains the product covers |
Filter by Term or search by name or type to narrow the list, then select the product's radio
button. Only credits with status Available appear here; if the table is empty you will see
No credits available to issue. and need to
request credits first.
The banner 1 credit will be deducted on issuance. is a reminder that the credit is spent when the
order is placed.

Changing the product resets everything you have already filled in in the wizard. Pick the product first, and change it only if you are prepared to start over.
Select Continue.
Step 2: Configure the Certificateβ
This step produces the Certificate Signing Request (CSR) β the file that carries your public key and the domain names the certificate will cover.
First choose the Web server where the certificate will be installed. The field defaults to
Others, which is the right answer when your server is not on the list or you are not sure.
Then choose how to obtain the CSR.
Option A: Provide Own CSRβ
This is the default. Paste the CSR you generated on your server into the CSR field and select Verify CSR. The platform parses it and shows a CSR details summary: key size, Common Name, organization, country, state, city and any additional domains it carries.
Use this option whenever the private key must stay on the server β which is the usual practice.
Select Change CSR if you need to replace it.
Option B: Generate CSRβ
The platform generates the CSR and the private key for you. Fill in:
| Field | Required | Notes |
|---|---|---|
| Common Name (domain) | Yes | The main domain, up to 64 characters. For a wildcard product it must start with *., for example *.acme.com |
| Additional domains (SAN) | No | Multi-domain products only. Type a domain and press Enter; commas, semicolons and spaces also separate entries |
| Organization | For OV and EV | The organization's legal name |
| Country, State, City | For OV and EV | The organization's location |
| Key size | Yes | RSA 2048-bit (default) or RSA 4096-bit |
Select Generate CSR & key.

The generated private key is never stored by the platform. It is displayed once, on this screen, and cannot be recovered afterwards.
Select Download private key or copy it, and store it securely, before you continue. If you lose it, the certificate that gets issued is unusable and you have to issue a new one β spending another credit.
If a certificate already exists for this domainβ
When your account already holds a valid certificate for the same Common Name, the wizard warns you before you spend a credit, showing when the existing one expires. Continuing places a second certificate and consumes another credit. If you meant to renew, close the wizard and use Reissue on the existing certificate instead β it consumes no credit.
Select Continue.
Step 3: Organization Detailsβ
This step appears only for OV and EV products. A chip breadcrumb shows the sections you have to complete: Organization and Contact for OV, plus Jurisdiction and Vetting for EV. A section turns green when it is valid.
If you provided your own CSR, these fields are prefilled from it and can be edited.
Organizationβ
All fields are required: Organization, Street address, City, State, Postal code and Country. Use the organization's legal registration data β this is what the certificate authority verifies.
The optional Prioritise the CSR values on conflict checkbox is off by default. Leave it off unless you want the certificate authority to prefer the values inside your CSR whenever they differ from what you type here.
Contactβ
The Contact details section registers the Application Representative for the organization. Use Prefill from a user to copy the data of a platform user, or type it in: First name, Last name, E-mail and Telephone are required, Job title is optional.
The certificate authority contacts this person, by phone or e-mail, to confirm the request was authorized. Issuance stays pending until they respond. Register someone reachable, and let them know a verification call or e-mail is coming.