Skip to main content

Renew a marketplace certificate

❗ Important: Domain and Certificate Management is being rolled out to select customers and is not enabled for all marketplaces. This topic applies only when the feature is enabled for your marketplace. If Domain and Certificate Management does not appear under SETTINGS at Manage > Marketplace > Settings, contact your AppDirect technical representative to request it.

If your marketplace uses your own SSL certificate, you must renew it before it expires. You generate a new CSR, obtain a signed certificate from your certificate authority, and upload the replacement.

AppDirect-provided certificates renew automatically. No action is required from your end to renew a certificate.

Before you start​

Renewal applies only to bring-your-own certificates. See Bring your own certificate if you have not set up your own certificate yet.

The Certificate Management dashboard may show how long your certificate is valid. Renew Certificate appears on the Certificate Status card when you use your own certificate.

Renew Certificate on the Certificate Management dashboard

Start certificate renewal​

πŸ“ Note: This documentation page may refer to Manage > Marketplace in navigation steps. If the Manage option is not available in your navigation, click the grid icon on the top-left corner of your header and click Marketplace.

  1. Go to Manage > Marketplace > Settings.
  2. Under SETTINGS, click Domain and Certificate Management.
  3. On the Certificate Management dashboard, find the Certificate Status card in Actions.
  4. Click Renew Certificate.

The Renew Certificate page opens.

Step 1: Generate a renewal CSR​

Generating a new CSR creates a new key pair. Your existing certificate stays active until you upload and deploy the replacement.

  1. On the Renew Certificate page, enter the following details:
    • Organization
    • Country (2-letter ISO country code)
    • State/Province
    • Locality
  2. Click Generate Renewal CSR.

Generate a renewal CSR

Step 2: Download the renewal CSR​

  1. On the Download CSR step, download the renewal CSR file shown on the page.
  2. Submit the CSR to your certificate authority to obtain a new signed certificate.
  3. When you have the signed certificate, return to the Renew Certificate page. Click I Have My Certificate β€” Continue.

You can also click Download CSR File to save the CSR to your computer.

Download the renewal CSR

Step 3: Upload your renewed certificate​

  1. On the Upload Certificate step, paste your PEM-encoded certificate in PEM Certificate, or click Upload File to upload a .pem or .crt file.
  2. Include the full certificate chain if your certificate authority provides one.
  3. Click Upload Certificate.

The upload step is the same as when you first bring your own certificate.

Upload your renewed certificate

Continue a renewal in progress​

If you started a renewal and have not uploaded the signed certificate yet, the Certificate Management dashboard shows Action Required.

An alert explains that a renewal CSR is waiting for a signed certificate. Click Continue Renewal Flow or Continue Renewal to return to the renewal steps.

Continue renewal from the dashboard

Cancel certificate renewal​

You can cancel a renewal before you upload the signed certificate. Click Cancel Renewal at the top of the Renew Certificate page.

In the Cancel Renewal dialog, confirm that you want to cancel. This deletes the pending renewal CSR and its private key. Your existing certificate stays active.

Cancel renewal confirmation

AppDirect-provided certificates​

If your marketplace uses an AppDirect-provided certificate, AppDirect renews the certificate automatically. The Certificate Status card shows that SSL is managed by AppDirect. A Renew Certificate option does not appear.

AppDirect-provided certificate on the dashboard

Next steps​

Was this page helpful?