Renew a marketplace certificate
β Important: Domain and Certificate Management is being rolled out to select customers and is not enabled for all marketplaces. This topic applies only when the feature is enabled for your marketplace. If Domain and Certificate Management does not appear under SETTINGS at Manage > Marketplace > Settings, contact your AppDirect technical representative to request it.
If your marketplace uses your own SSL certificate, you must renew it before it expires. You generate a new CSR, obtain a signed certificate from your certificate authority, and upload the replacement.
AppDirect-provided certificates renew automatically. No action is required from your end to renew a certificate.
Before you startβ
Renewal applies only to bring-your-own certificates. See Bring your own certificate if you have not set up your own certificate yet.
The Certificate Management dashboard may show how long your certificate is valid. Renew Certificate appears on the Certificate Status card when you use your own certificate.

Start certificate renewalβ
π Note: This documentation page may refer to Manage > Marketplace in navigation steps. If the Manage option is not available in your navigation, click the grid icon on the top-left corner of your header and click Marketplace.
- Go to Manage > Marketplace > Settings.
- Under SETTINGS, click Domain and Certificate Management.
- On the Certificate Management dashboard, find the Certificate Status card in Actions.
- Click Renew Certificate.
The Renew Certificate page opens.
Step 1: Generate a renewal CSRβ
Generating a new CSR creates a new key pair. Your existing certificate stays active until you upload and deploy the replacement.
- On the Renew Certificate page, enter the following details:
- Organization
- Country (2-letter ISO country code)
- State/Province
- Locality
- Click Generate Renewal CSR.

Step 2: Download the renewal CSRβ
- On the Download CSR step, download the renewal CSR file shown on the page.
- Submit the CSR to your certificate authority to obtain a new signed certificate.
- When you have the signed certificate, return to the Renew Certificate page. Click I Have My Certificate β Continue.
You can also click Download CSR File to save the CSR to your computer.

Step 3: Upload your renewed certificateβ
- On the Upload Certificate step, paste your PEM-encoded certificate in PEM Certificate, or click Upload File to upload a
.pemor.crtfile. - Include the full certificate chain if your certificate authority provides one.
- Click Upload Certificate.
The upload step is the same as when you first bring your own certificate.

Continue a renewal in progressβ
If you started a renewal and have not uploaded the signed certificate yet, the Certificate Management dashboard shows Action Required.
An alert explains that a renewal CSR is waiting for a signed certificate. Click Continue Renewal Flow or Continue Renewal to return to the renewal steps.

Cancel certificate renewalβ
You can cancel a renewal before you upload the signed certificate. Click Cancel Renewal at the top of the Renew Certificate page.
In the Cancel Renewal dialog, confirm that you want to cancel. This deletes the pending renewal CSR and its private key. Your existing certificate stays active.

AppDirect-provided certificatesβ
If your marketplace uses an AppDirect-provided certificate, AppDirect renews the certificate automatically. The Certificate Status card shows that SSL is managed by AppDirect. A Renew Certificate option does not appear.

Next stepsβ
Was this page helpful?
Tell us moreβ¦
Help us improve our content. Responses are anonymous.
Thanks
We appreciate your feedback!