After you enable hosting for a certificate, the system automatically applies for a new certificate or deploys the new certificate if the validity period of the hosted certificate is less than 30 calendar days. This topic describes how to enable hosting for a certificate.
Procedure
Go to the Certificate Management Service buy page and log on to your Alibaba Cloud account.
Configure the parameters for the certificate that you want to purchase based on your business requirements.
If you want to enable hosting, you must set Service Duration to 2 Years or 3 Years. For more information about the parameters on the buy page, see Purchase SSL certificates.
Click Buy Now and complete the payment.
After you complete the payment, Certificate Management Service generates certificates on the Official Certificate tab. The number of certificates is determined by the value of Service Duration that you specify. For example, if you set Service Duration to 3 Years, Certificate Management Service generates one certificate in the Pending Application state and two associated certificates in the Not Activated state. You can click the icon to the right of Pending Application or Not Activated in the Status column to view the certificate lifecycle. The following list describes the states of certificates:
Pending Application: The payment is complete and Alibaba Cloud has automatically generated certificates, but no certificate application is submitted for the first certificate. In this state, you must submit a certificate application for your certificate and cooperate with the CA to complete certificate review.
Hosted: After the first certificate is issued, the certificate changes to the Hosted state. This state indicates that your certificate is hosted by Certificate Management Service. If the hosted certificate is about to expire, Certificate Management Service automatically activates a new certificate that is associated with the hosted certificate and submits an application for the new certificate. If issues such as verification failures on enterprise information and Domain Name System (DNS) records occur during the application review, your dedicated technical support engineer will contact and guide you to complete the application review.
Not Activated: The certificate is not activated. If a certificate is in this state, Certificate Management Service activates the certificate when a different certificate that is associated with the certificate is about to expire. Then, Certificate Management Service submits an application for the activated certificate.
What to do next
After the certificates are generated, you must submit an application for the certificate in the Pending Application state. For more information, see Apply for a certificate.
You must manually submit an application for the first certificate that is generated. When the first certificate that is generated is about to expire, the certificate hosting service automatically activates the second certificate that is generated and submits a certificate application by using the information that you specify for the application of the first certificate. You do not need to manually submit an application for the second certificate.