Creating a Test Certificate
Test certificates lower the technical barrier and cost of enabling HTTPS in development and testing environments. CCM provides DigiCert DV(Basic) single-domain certificates with a validity period of 3 months as test certificates. You can apply for a test certificate only after it is created. Figure 1 shows the process. This section describes how to create a test certificate.
Differences Between a Free Test Certificate and a Test Certificate in a Capacity Expansion Package
- You can apply for a maximum of 20 free test certificates under each account. In CCM, only one test certificate can be applied for at a time.
- Once you purchase a test certificate, it will be counted towards the quota even if you delete it after submitting the application or revoke it after it is issued.
- Your account and the IAM users created under your account share the quota of the 20 test certificates. For example, if an account has applied for 20 test certificates, no test certificate quota is available for this account or the IAM users it creates.
- If your Huawei Cloud account has used up the quota of 20 test SSL certificates but you still want to apply for more SSL test certificates, purchase the DigiCert DV (basic) single-domain certificate package to increase your test certificate quota. For details about the differences between free test certificates and test certificates in a capacity expansion package, see Table 1.
| Item | Free Test Certificate | Test Certificate in a Capacity Expansion Package |
|---|---|---|
| Pricing | Free | One-off payment A single capacity expansion package contains 20 test certificates. |
| Validity period | 3 months | 1 year The subscription period of a single test certificate is one year. Within one year, CCM will issue multiple certificates for you, with the total validity period of the certificates being one year. The new certificate will be automatically generated within 30 days before the previous one expires. Complete the verification in a timely manner. |
| Supported certificate types | DigiCert DV (Basic) single-domain certificate | |
| Renewals Supported | Not supported A test certificate cannot be renewed. After a test certificate expires, it cannot be used anymore. If you still need an SSL certificate, create one in CCM. | |
| Steps of creating a test certificate | Creating a Test Certificate (Method 1) or Creating a Test Certificate (Method 2). | |
Prerequisites
The IAM user who purchases the certificate has been granted the SCM Administrator/SCM FullAccess, BSS Administrator, and DNS Administrator permissions.
- BSS Administrator: has all permissions on account center, billing center, and resource center. It is a project-level role, which must be assigned in the same project.
- DNS Administrator: has full permissions for DNS.
For details, see Permissions Management.
Constraints
- An account can have a maximum of 20 test certificates. The quota will not be restored after a certificate is deleted or revoked.
- One test certificate can be used to secure only one single domain name. Test certificates cannot be used to protect IP addresses or wildcard domain names.
- By default, DNS verification is used to verify the domain ownership of a test certificate.
- The trust and security level of test certificates are low. They are recommended only for testing.
- For DigiCert DV (Basic) free certificates, no free technical support or installation guide is provided.
Creating a Test Certificate (Method 1)
- Log in to the CCM console.
- In the navigation pane on the left, choose SSL Certificate Manager > SSL Certificates.
- Choose the Test Certificates tab page in the certificate list, and click Create Test Certificate.
The numbers displayed next to the Create Test Certificate button indicate the remaining quota and total quota of test certificates you can create. For example, 13/20 means you have 13 remaining test certificates out of a maximum limit of 20.
- Read and select I have read and agree to the Cloud Certificate & Manager Statement. Then, click OK.
- You can view the created test certificate on the Test Certificates tab on the SSL Certificates page.
If the test certificate is not displayed in the certificate list, refresh the page.
Creating a Test Certificate (Method 2)
- Log in to the CCM console.
- In the navigation pane on the left, choose SSL Certificate Manager > SSL Certificates.
- In the upper right corner of the page, click Buy Certificate to go to the certificate purchase page.
- On the certificate purchase page, set parameters.
- Domain Type: Select Single domain.
- Certificate Type: Select DV (Basic).
- Certificate Authority: Select DigiCert.
- After you select a certificate type and CA, other parameters, such as Domain Quantity, Subscription Period, and Quantity, are configured automatically.
Figure 2 Free certificate configuration
- Click Next.
- Confirm the order information and agree to the CCM statement by selecting I have read and agree to the Cloud Certificate & Manager Statement. Click Pay.
- On the displayed page, select a payment method.
After you pay for the order, you can view the created test certificate on the Test Certificates tab on the SSL Certificates page.
Follow-up Procedure
After you create a test certificate, you still need to associate a domain name with it, provide certain details, and then submit it for approval. The CA issues the certificate only after all information is approved. For details, see Submitting a Test Certificate Application.
What is your overall rating for this page?
Thank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot
