Skip to main content

Domain SSL Certificate Renewal Process

This article outlines the process for renewing expiring domain SSL certificates.

Updated yesterday

Overview:


Domain SSL certificates expire periodically and must be renewed to maintain uninterrupted access to your Frontify custom subdomain. This happens automatically and without IT involvement on your side if your SSL certificate is issued by Frontify. If your team has provided Frontify with a certificate, however, then the updated certificate must be provided to Frontify manually before expiry.

Steps to Renew Your SSL Certificate

  1. Prepare Required Information:

    • IT contact emails for coordination

    • Domain affected by the certificate renewal

    • New certificate if self-signed OR CSR details (see below)

      • Alternatively, Support can coordinate with your IT to transition your domain to a Frontify-issued SSL

  2. Contact your Customer Success Manager:

    • Provide your IT contacts, the domain affected by the renewal, and the new certificate (if already prepared)

  3. Coordinate the Certificate Switch:

    • Our support team will coordinate with your IT on the renewal

    • We will update the configuration on our side

    • You will receive confirmation when the update is complete

Critical Requirements

  • Send us your new certificate before the current certificate expires to avoid your domain going down. We recommend starting the process 30 days or more before the SSL expires.

  • Certificate updates can only be performed during support hours

😌 Consider switching to a Frontify-issued certificate. This is free and auto-renews each year as long as the validating DNS record remains in place.

Certificate files or details to provide

If providing a self-signed certificate

  • Please provide: new certificate, certificate chain, and private key in .pem format

If requesting a CSR

Mandatory Fields

  • Country (2-letter code): The ISO 3166-1 alpha-2 country code (e.g., DE, US, GB)

  • Common Name (domain): The primary Fully Qualified Domain Name (FQDN) the certificate will secure (e.g., www.example.com or example.com)

Optional Fields

  • State/Province: The state or province name

  • Locality (city): The city name

  • Organization: The legally registered name of the organization

  • Organizational Unit: A division or department within the organization (e.g., IT Department)

Additional Configuration

  • Key Size: Select the desired bit length for the RSA key pair (e.g., 2048, 4096). 2048 bits is the current industry minimum standard

  • Alt. Names (SAN): Additional hostnames (Subject Alternative Names) to be included in the certificate, separated by commas or spaces

Support Hours for Certificate Updates:

Monday-Thursday 8:30 AM - 11:30 PM CET

Friday 8:30 AM - 11:00 PM CET

Monday-Thursday 2:30 AM - 5:30 PM EST

Friday 2:30 AM - 5:00 PM EST

Did this answer your question?