Help Center/ Cloud Certificate Manager/ FAQs/ SSL Certificate Download, Installation, and Use/ SSL Certificate Use/ How Do I Apply an SSL Certificate to Other Huawei Cloud Services?
Updated on 2024-12-13 GMT+08:00

How Do I Apply an SSL Certificate to Other Huawei Cloud Services?

After an SSL certificate is issued or uploaded, it can be used in other Huawei Cloud services, such as WAF, CDN, and ELB.

In SCM, you can deploy an SSL certificate to WAF, ELB, or CDN in just a few clicks. If a certificate needs to be pushed to another Huawei Cloud service, you need to download the certificate, upload the certificate to the corresponding service console, and deploy the certificate.

Constraints

  • Before updating an SSL certificate for ELB, ensure that the following conditions are met:
    • You have configured the original certificate in ELB. This means the certificate that is being used for ELB and you want to update in SCM must have been configured in ELB at the very beginning. Then, you can quickly update it in SCM. For details about how to create a certificate in ELB, see Creating a Certificate.
    • You can use SCM to update the certificate deployed on listeners in ELB. If you update an SSL certificate in SCM, the certificate content and private keys are updated in ELB accordingly. ELB then updates the certificate content and private keys on all listeners where the certificate is deployed for.
    • To update a certificate used for ELB in SCM, domain names must be associated with the certificate in ELB.
    • If an ELB certificate is used for multiple domain names, ensure that the new certificate you want to update in SCM for ELB must match with those domain names. If they do not match, the domain names in the new certificate will overwrite the ones in the original certificate after the update.

      For example, the primary domain name and additional domain name of the new certificate are example01.com and example02.com, respectively, and the domain names associated with the original certificate in ELB are example01.com and example03.com. When you update the certificate in SCM, the domain names associated with the certificate in ELB are updated to example01.com and example02.com.

  • Currently, you can use SCM to quickly deploy an SSL certificate to WAF in the default enterprise project only. For other enterprise projects, download the certificates first, upload them to WAF, and then deploy them in WAF.
  • If you select Upload a CSR for CSR when applying for a certificate, the issued certificate cannot be directly deployed to other cloud products through SCM. To use a certificate in a cloud product, download the certificate to your local PC first. Then, upload it to the cloud product and complete deployment.

Applying Certificates in SCM to WAF, ELB, and CDN

In SCM, you can deploy an SSL certificate to WAF, ELB, or CDN in just a few clicks. With SSL certificates, data access through the cloud products is more secure.

For details, see Deploying a Certificate.

Applying Certificates in Other Cloud Products

Alternatively, you can download the certificate to your local PC and then upload it to the management console of the specific cloud product and complete deployment.