SSL certificate validation for custom domains

Dina Bennett
Dina Bennett
  • Updated

If your organization uses a custom domain with Ziflow, the SSL/TLS certificate for that domain is issued and managed through AWS Certificate Manager, a service provided by Amazon Web Services.

Your certificate can be configured using email validation or DNS validation.

Email validation

If email validation was selected: 

  • AWS Certificate Manager sends validation emails when the certificate needs to be confirmed for renewal.

These emails:

  • Are sent from no-reply@certificates.amazon.com
  • Are generated directly by AWS (not by Ziflow)
  • May not mention Ziflow in the message

The messages are generated by Amazon Web Services and may appear suspicious, however, they are part of the standard SSL certificate renewal process.

DNS validation (recommended)

Ziflow recommends using prefer DNS validation to eliminate manual renewal steps. If DNS validation was selected:

  • You add a verification record to your domain’s DNS configuration once.
  • AWS Certificate Manager automatically renews the certificate after that.
  • No further validation emails are required.

Switch to DNS validation

If you want to switch from email validation to DNS validation for your custom domain certificate, contact Ziflow Support. They can guide you through the required DNS configuration.

Was this article helpful?

Comments

0 comments

Please sign in to leave a comment.