hero-faq-1

FAQs

What is a Fully Qualified Domain Name?

A fully qualified domain name (FQDN), sometimes also referred to as an ‘Absolute Domain Name’, the ‘Domain Name’, or ‘Common Name’ is a domain name that specifies its exact location in the tree hierarchy of the Domain Name System (DNS).

You must specify the FQDN when filling in the Certificate Signing Request form. For example, if you wish to secure the https://yoursite.com/about.html, the ‘Domain Name’ or ‘Common Name’ is Yoursite.com.

As you can see, the FQDN doesn’t include the protocol name (https://) nor the subpages or subcategories (about.html).

Please note, when requesting a Wildcard SSL certificate, you must add an asterisk before your Domain Name. For instance, *.yourdomain.com.

Source: Sectigo’s Knowledge Base

Copy Link

What is a Multi-Domain or SAN SSL Certificate?

The Subject Alternative Name (SAN) SSL certificate, also called the Unified Communication Certificate (UCC) or the Multi-Domain SSL certificate was particularly developed to secure all your domains and subdomains by owning one single SSL certificate. This type of certificate ensures the security for both, your internal and external domains/subdomains and is fully compatible with your Microsoft Exchange products and Microsoft Office Communications Server.

UCC/SAN SSL certificates are not just easy to be managed but are the most cost-effective option. These certificates give you the opportunity to secure your main domain, for example, ssldragon.com, together with many other totally distinct domains, like ssldragon.net, ssldragonsslcertificates.com and its subdomains mail.ssldragon.com and account.ssldragon.com – all with 1 single certificate. Besides, unlike Wildcard SSL certificates, UCC/SAN certificates are available in all three validation methods: Domain Validation (DV), Business Validation (BV) and Extended Validation (EV).

You can find our full list of Multi Domain (UCC/SAN) SSL Certificates at this link.

Copy Link

What is a scalable SSL certificate?

Scalable certificates offer a range of encryption bit lengths. By default, DigiCert digital certificates are 2048-bit encryption strength. However, some older web browsers only support an encryption length of 256-bit, 128-bit, and 40 bits. Rather than force those customers to upgrade their browsers, the DigiCert certificate scales down, offering the customer the maximum strength they can support.

Copy Link

What is a Site Seal?

A site seal is a security icon graphic showing the name of the issuing Authority of the SSL. The site seal on your website is a proof that your business has been verified by the Certificate Authority.

You will be issued a static or dynamic site seal, depending on the SSL certificate that you buy for your website. A dynamic site seal will usually display a live time and date stamp and/or your company name. Visitors can click on the site seal to display additional verification information.

By displaying the site seal in preeminent place on your website, you will make your clients feel safer while performing transactions, knowing that any information shared is within a secure environment and authenticated by a trusted Certificate Authority.

Copy Link

What is a Wildcard SSL Certificate?

The Wildcard SSL certificate was specifically designed for ensuring the security of your main domain, along with its multiple subdomains. For instance, if your site’s domain is ssldragon.com, then the Wildcard certificate for “*.ssldragon.com” will secure an unlimited number of your first-level subdomains like mail.ssldragon.com, account.ssldragon.com or login.ssldragon.com. By buying this SSL certificate, you don’t need to purchase other certificates for each subdomain. The Wildcard SSL certificate comes in two options: Domain Validation (DV) and Business Validation (BV).

Besides being a convenient way of securing your site, Wildcard SSL certificates are very easy to be managed because the domains will have the same renewal date. This is why you should consider getting Wildcard certificates if you own a complex website, with different subdomains, IP addresses or server storage options. Yet, if you have level 2 subdomains (like test.account.ssldragon.com) or you need an Extended Validation (EV) SSL Certificate, you may have to buy a separate SSL certificate for each domain/subdomain or a UCC/SAN SSL certificate for all of them.

Copy Link

What is an Extended Validated (EV) SSL Certificate?

The Extended Validation (EV) SSL Certificate is the best choice if you want to build customer relationships based on security and trust. This certificate is issued only after the Certificate Authority (CA) performed an extensive verification of your company and its owner, confirming that your business is trustworthy. The validation process can take a few business days. But if you keep your company’s records up to date, the Extended Validation SSL certificate will be issued quickly, confirming that your company owns the website.

This type of SSL certificate significantly enhances the trust level of your website. Extended Validation certificates are highly effective in providing protection against phishing attacks because they make your clients feel safer while performing transactions and this fact will definitely boost your conversions. This is why Extended Validation certificates are considered the most reputable SSL Certificates for your website.

Copy Link

What is an SSL reissue and when will I need to request it?

The reissue of an SSL certificate means its replacement with a new SSL. The reissued SSL certificate will only be valid until the expiration of the original certificate.

You will need to request the reissue of your SSL certificate in any one of the following situations:

  • You have lost the private key for the certificate;
  • You have changed your web server/hosting provider;
  • You have changed your contact information and you need to update it on your certificate;
  • You feel that your private key is compromised.

The reissue of your SSL certificate is free of charge.

Copy Link

What is encryption strength?

Encryption strength is the size of the keys used to perform the encryption of data during an SSL session. The longer keys provide stronger encryption and make it difficult for computers to break the code.

All our SSL certificates support up to 256-bit encryption, as it is strongly recommended by the industry experts.

Copy Link

What is the difference between SHA-1 and SHA-2?

SHA – standing for Secure Hash Algorithm – is a hash algorithm used by certification authorities to sign certificates and CRL (Certificates Revocation List).

SHA-1 is an older version of the algorithm that is no longer considered to be secure by major browsers and industry experts. SHA-1 is no longer allowed to be used during the generation process by the industry.

SHA-2 is the latest version that is widely accepted and considered to be secure by all major industry experts and browsers. The encryption hash used in SHA-2 is significantly stronger and not subject to the same vulnerabilities as SHA-1.

Copy Link

What term can I buy an SSL certificate for?

The validity of an SSL certificate varies between 1 and 3 years, depending on the certificate you choose to buy. The Extended Validated SSL certificates are valid for 1 or 2 years. The Domain and Business Validated SSL certificates offered by Sectigo, GoGetSSL, can be issued for up to 3 years, RapidSSL, DigiCert, GeoTrust and Thawte – for 2 years.

You can save between 7% and 15% when purchasing an SSL certificate for 2 or 3 years ahead.

Copy Link