Frequently Asked Questions Q. Why do I need a Trial SSL Certificate? A. The VeriSign Trial ID allows you to test the benefits of Secure Sockets Layer (SSL) technology in a pre-production environment. Prior to purchasing one of VeriSign's Secure Site services, you can generate a Certificate Signing Request (CSR), install the certificate, and enable SSL. Q. How do I use the Trial ID? A. After you complete and submit the Trial SSL Certificate enrollment form, you will receive the ID by e-mail within one hour. The e-mail will contain the CSR that you submitted, signed and ready to install on your Web server. The e-mail will also include a link to installation instructions. Once you have installed the certificate, you will be able to test your application for 14 days, with no obligation to purchase. Q. How long does it take to receive the Trial SSL Certificate after I enroll? Where do I go to pick it up? A. Within an hour of enrolling, the technical contact listed on the your order form will receive an e-mail containing the Trial SSL Certificate and installation instructions. Q. I was not able to download/install my Free 14 Day Trial SSL Certificate. Can I get another Trial SSL Certificate valid for an additional 14 days? A. Yes. In order to receive another Trial SSL Certificate, you must generate and submit a new CSR with a slightly different Organizational Unit. This will prevent a duplication error. For example, if you previously used "Marketing" as your Organizational Unit, change it to "Marketing1" when you submit your new CSR. Q. Do you have a Trial SSL Certificate that is valid for more than 14 days? Can I extend the one that I have? A. No. Currently VeriSign only offers a Trial SSL Certificate, that is valid for 14 days. VeriSign cannot modify or extend the validity period on an ID. Q. I attempted to enroll for an additional Trial SSL Certificate and received a duplicate error. Why? A. VeriSign cannot issue duplicate IDs. If you wish to enroll for an additional ID, you must generate a new CSR with a slightly different Organizational Unit and re-submit the enrollment. For example, if you previously used "Marketing" as your Organizational Unit, change it to "Marketing1" when you re-submit your CSR.". Q. I never received the Trial SSL Certificate e-mail. Can you re-send it to me? A. Unfortunately, we are not able to re-issue Trial SSL Certificates. If you wish to receive an ID, you must generate a new CSR with a slightly different Organizational Unit and re-submit the enrollment. For example, if you previously used "Marketing" as your Organizational Unit, change it to "Marketing1." Q. Can I use the same CSR that I generated for a Trial SSL Certificate to enroll for a full, one- year SSL Certificate? A. Some servers will allow you to use the same CSR and merge a new SSL Certificate with an existing private key. If you are not sure whether your server supports this function, please refer to your server’s technical manual. Alternatively, you can create a new private key and generate a new CSR before enrolling for an SSL Certificate. Q. Do you have a Trial SSL Certificate for your Global Site Services? A. No. Due to the restrictions in VeriSign's license from the U.S. Commerce Department’s Bureau of Export Administration, VeriSign is not allowed to issue Trial 128-bit SSL (Global Site) Server IDs, without performing full authentication procedures. As a result, we cannot offer a free, Trial 128-bit SSL (Global Site) Server ID Service. Q. Why can I only generate a 512-bit key for the Trial SSL Certificate? A. The size of the key that you generate is based the type of server software you are using. International versions (used outside the U.S.) and some older server software can only create 512-bit keys. U.S. domestic versions of the server software may allow you to generate a 1024-bit (128-bit) and 512-bit (40-bit) keys. VeriSign strongly recommends using a 1024-bit key when possible, as it allows stronger encryption. Q. Can I use the Trial SSL Certificate on my production server? A. No. The Trial SSL Certificate is to be used only in testing environments. Trial SSL Certificates provide no assurance of your corporate identity to others. VeriSign recommends using only 40-bit SSL Certificates and 128-bit SSL (Global Site) Server IDs on your production server. Q. Why do I receive a dialog box stating that the browser does not recognize the Certificate Authority that issued my VeriSign Trial SSL Certificate? A. A special trial root Certificate Authority is used to digitally sign VeriSign Trial SSL Certificates. This trial root will be manually installed in your browser as you enroll for a Trial SSL Certificate. To install the trial root CA in your browser, please go to: https://digitalid.verisign.com/server/trial/trialStep4.htm. This issue dialog box will not occur when you purchase and install a 40-bit SSL Certificate. Q. What is the CA Root and why do I have to install it on all client browsers? A. When we issue an ID, we act as a Certification Authority (CA). VeriSign digitally signs each ID it issues. Each browser contains a list of CA’s that are deemed to be "trusted.". The VeriSign Trial CA is for testing purposes only and is not included in any browser’s trust list. As a result, Trial SSL Certificates are not trusted by the browsers. To use a Trial SSL Certificate, you must install a special Test CA Root on EACH BROWSER that you will use to access the Web site secured with the Trial ID. To install the trial root CA in your browser, please go to: https://digitalid.verisign.com/server/trial/trialStep4.htm. |
![]() |
![]() |
![]() ![]() Copyright © 2000, VeriSign, Inc. All Rights Reserved |