Certificates for HorizonWeb

HorizonWeb 4.2 and higher

Buying a certificate

A survey of market share, shows you which CAs other companies, worldwide, are trusting. Different products give different levels of warranty. The warranty is provided by the CA. There are some comparison sites, such as Which SSL, from which information can be obtained. ECI will not recommend a provider, so please do your own research and consult your own specialists – caveat emptor.

Certificates

Certificates can be bought from many different vendors. You are not required to use one particular vendor when buying a certificate. Certificates are sold by certificate authorities (CA) and by affiliates that resell their products. There are three levels of certificate validation you can choose from:

  • Domain validation (DV) – The CA validates who owns the domain.
  • Organization validation (OV) – The CA validates who owns the domain and the existence of the organization.
  • Extended validation (EV) – The CA validates the domain, that the organization exists and further information such as business registration and other jurisdiction. An EV certificate cannot be a wildcard certificate.

Appearance in a browser

When a website is encrypted using HTTPS, the browser appears differently to your customer. For DV and OV certificates:

  • https address shown the address bar. From Chrome 56, HorizonWeb sites, without HTTPS encryption, will be displayed as Not secure.
  • Padlock icon displayed in the address bar
  • Certificate details displayed when the padlock is clicked

Additionally, an EV certificate gives the user additional feedback about the website they are visiting:

  • Green in the address bar (green bar or issuance name)
  • Website owner's company name in the address bar
  • Organization information in the certificate details

EV certificates provide the same level of encryption – 2048-bit encryption. What you are paying for is the level of validation, displaying to the customer that your company has been checked by the CA.

Sending the certificate

We need you to send us two certificates. Both will be issued to you by the CA.

  • Leaf certificate – the certificate that is linked to the website.
  • Intermediate certificate – intermediate certificates create a chain of trust. They sit between the leaf certificate and the root certificate.

Expiration

If you let the certificate expire, the certificate becomes invalid. Typically, you can renew your certificate 120 days prior to and 30 days following the expiration date. This must be done by you – please add a diary entry. If the certificate expires, customers will no longer be able to access your HorizonWeb shop.

Concept Link IconSee Also