You need a credentials truststore for SSL communication with the Sectigo API.
See com.SectigoCA for how to set this truststore in the CA Gateway configuration.
To create the truststore for authenticating with the Sectigo API
- Open a browser to the following URL.Where
https://cert-manager.com/customer/<customer-uri><customer-uri>matches thecustomer-urivalue you will configure on the com.SectigoCA settings. - Click the lock icon beside the URL in the address bar and export the certificate chain.
- Create a truststore containing the exported certificates. For example, use the
openssl pkcs12command to create a PKCS #12-type truststore.openssl pkcs12