How to Obtain Your Own Verisign Certificate (Digital ID)

Please see the following documentation if you would like to use our Verisign certificate instead of purchasing your own certificate.

Please be aware that Verisign will bill you directly for Digital IDs. Their current pricing is:

First Server Digital ID, first year: US$349
Server Digital ID Renewal, annual fee: US$249 each


If you would like to obtain your own certificate, please follow these steps:

1. Complete our Information Form

Complete our Information Form at the following URL to begin the process:

http://yourdomain.com/cgi-bin/secure/ssl (UNIX)
http://yourdomain.com/stats/sslset.asp (NT)

You will be asked to fill in information about your company and your domain. Explanations of required information are
listed below.

2. Receive your "CSR" via e-mail

After completing our form, we will gather information about your site and generate an encrypted Certificate Signing Request (CSR). Once the newly generated CSR is returned to you via email.

3. Submit your "CSR" to Verisign

Once you receive your "CSR" fill out the Verisign SSL Server Certificate Enrollment Form located at: www.verisign.com/products/site/ss/ss.html.

Important: Web Server Software Form Field Options

Unix Accounts: C2Net Stronghold
Windows 2000 Accounts: Microsoft IIS 5.x and later
Windows NT Accounts: Microsoft IIS 1.x to 4.x

4. Verisign will send you an encrypted server "key"

Forward the encrypted "key" to Road Runner via e-mail. When the key is placed on our server the certificate is activated.

Important: Once you receive your temporary Verisign certificate, your shared SSL certificate will no longer be active. You should be prepared to modify your secure server URL references from our shared domain to your own domain to minimize any interruption in service. Please also take note, if you are running a shopping cart program, such as SoftCart or ShopSite, there will need to be adjustments made to your SoftCart shopping cart manager files which Tech Support can help with. ShopSite users are able to adjust their settings to reflect their new SSL certificate from within their store manager.




Explanation of the form fields you will need to complete:

Common Name: The server's fully qualified domain name (It must be registered to the organization specified in that field), in the format: www.company.com (www2.company.net, company.com, org.edu, and so on). Note: you cannot use the symbols "*" or "?" as part of your common name.

Organization/Company: The legal name under which your organization is registered. Do NOT abbreviate.

Organizational Unit: This is used to differentiate between organizational divisions. Also for Doing Business As... names. Do NOT abbreviate.

City/Locality: Required for organizations registered only at the local level. Do NOT abbreviate.

State/Province: The complete name of the state or province where your organization is located.

Country: The two-character ISO-format country code. For example, GB for Great Britain a nd US for the United States.

E-mail Address: Your E-mail address where you receive your mail. Your "CSR" will be sent to this address.

Technical Contact: The person who should receive the certificate and who will provide notice if the Digital ID is compromised. (For example, this may be your organization's webmaster or the appropriate technical support representative at your Internet service provider.) Renewal notices are sent to both the technical and organizational contacts.

Organizational Contact: The person within your organization who will take responsibility for the certificate and provide organizational information. (For example, this may be your organization's CEO or the appropriate support person. The organizational contact must be a member of your organization, not a representative of your Internet Service Provider.) Renewal notices are sent to both the technical and organizational contacts.

Return to Step 1



Definitions

Digital ID

A collection of electronic data consisting of a Public Key, identifying information about the owner of the Public Key, and validity information, which has been Digitally Signed by a CA. Certified shall refer to the condition of having been issued a valid Digital ID by a CA, which Digital ID has not been revoked.

Digital ID Revocation List ("CRL")
A collection of electronic data containing information concerning revoked Digital IDs.

Certification Authority ("CA")
VeriSign or an entity which is Certified by VeriSign to issue Digital IDs to Users in a VeriSign Digital ID Hierarchy. VeriSign is Customer's CA hereunder.

Digital Signature
Information encrypted with a Private Key which is appended to electronic data to identify the owner of the Private Key and verify the integrity of the electronic data. Digitally Signed shall refer to electronic data to which a Digital Signature has been appended.

Private Key
A mathematical key which is kept private to the owner and which is used to create Digital Signatures or to decrypt electronic data.

Public Key
A mathematical key which is available publicly and which is used to verify Digital Signatures created with the matched Private Key and to encrypt electronic data which can only be decrypted using the matched Private Key. We currently generate 768 bit keys for Unix accounts and 1024 bit keys for our NT accounts.

Return to top