SSLTrust

Sectigo ACME SSL Certificate

You can now automatically setup your secure SSL Certificates from Sectigo using Certificate as a Service (CaaS) with your ACME clients. It will automatically request, issue, install and renew your certificates for all your domains.

  • Icon of a wire globe network Domain
    Validation
  • ACME icon ACME
    Protocol
  • Icon arrows in circle Automatic Issuance
    and Renewal
  • EAB's
    Multiple External
    Account Bindings
  • 1-500
    Domains Secured
    All Subdomains
  • 30
    Days
    Refund Policy
  • Icon multiple folders with padlock Unlimited
    Certificates
  • Icon of a server rack Unlimited
    Server Licenses
  • The Sectigo Site Seal Secure
    Site Seal
  • View All Features & Specs
Sectigo logo
Select how many domains below
Currency:
Standard
Domains secured:
$0.00
Each Domain
Wildcard
Domains secured:
$0.00
Each Wildcard Domain

Buy or Renew ACME SSL Certificate

Sectigo’s Certificate as a Service (CaaS) is a powerful, automated solution designed for SSL Certificates using the ACME protocol. This platform simplifies and streamlines certificate lifecycle management through a single API, allowing partners to efficiently issue, renew, and manage their certificates with minimal manual intervention. By integrating automated domain validation and leveraging the ACME protocol, Sectigo CaaS eliminates common pain points associated with certificate management, reducing the risk of expired certificates and service disruptions.

One of the standout features of Sectigo CaaS is its subscription-based pricing model, which moves away from traditional per-certificate costs in favor of a predictable, scalable per-domain subscription. This model provides partners with greater financial flexibility, making it easier to manage large volumes of certificates across multiple domains while maximizing profitability. Additionally, the platform supports multi-tenant management, enabling partners to oversee certificate deployment for all their platforms, servers and endpoints through a single, centralised interface.

Beyond efficiency, Sectigo CaaS enhances security and compliance by ensuring certificates are always up to date and aligned with the latest industry standards. The automation of renewals and issuance significantly reduces the risk of human error, helping businesses maintain a strong security posture. With built-in scalability, partners can seamlessly handle growing demand without compromising on speed or reliability.

By adopting Sectigo’s CaaS, partners can transform certificate management into a seamless and revenue-generating process. The combination of automation, security, and predictable pricing allows businesses to enhance customer satisfaction while focusing on growth and innovation.

Secured with SSLTrust

  • NSW Education Standards Authority
  • Mac Centre
  • The University of Sydney
  • Australian Maritime Safety Authority
  • City of Greater Bendigo
  • Victoria State Government
  • Royal Flying Doctor Service
  • Cancer Council

Expert Team ready to help

  • Photo of Hollie Acres

    Hollie Acres

    SSLTrust Account Manager

    Hollie has been part of the SSLTrust team since it was established. She is a qualified Mechanical Engineering and IT professional.

Setting up your Sectigo ACME SSL Certificate

With a number of popular ACME clients available, you will be able to pick the one which suites your requirements the best. Here are some quick examples of how you can setup the most popular with your new Sectigo Certificate.

Certbot is a free, open-source software tool developed by the Electronic Frontier Foundation (EFF). It acts as a client for the ACME protocol, and its primary function is to automate the process of obtaining, installing, and automatically renewing SSL/TLS certificates (especially from Let's Encrypt) on web servers like Apache and Nginx. It simplifies securing websites with HTTPS by handling the technical steps for you.

## First register your new Account Binding provided to you
certbot register --server {SERVER_URL_HERE} \
--eab-kid {EAB_KID_HERE} \
--eab-hmac-key {EAB_KEY_HERE}

## Request new certificate for domain certbot certonly --server {SERVER_URL_HERE} \ --webroot -w /var/www/example -d mydomain.com -d www.mydomain.com
## Renew all previously obtained certificates that are near expiry certbot renew

You can read more about the Certbot commands here.

Standing out as an ACME client implemented purely as a Unix shell script, acme.sh is a lightweight, open-source tool designed for automating SSL/TLS certificate management. It allows users to easily obtain and automatically renew certificates from numerous ACME-compliant Certificate Authorities. Its shell-based nature prioritises simplicity, high portability, and minimal dependencies, making it a flexible choice for command-line users and automated scripting across various systems.

## First register your new Account Binding provided to you
acme.sh --server {SERVER_URL_HERE} --register-account \
--eab-kid {EAB_KID_HERE} \
--eab-hmac-key {EAB_KEY_HERE}

## Request new certificate for domain acme.sh --issue -d mydomain.com -d www.mydomain.com \ -w /home/wwwroot/mydomain.com --server {SERVER_URL_HERE}
## Renew the certificate or recheck for domain validation and issue cert acme.sh --issue -d mydomain.com -d www.mydomain.com --server {SERVER_URL_HERE} --renew

You can read more about the acme.sh commands here.

Posh-ACME is a powerful and user-friendly PowerShell module that simplifies the process of obtaining and managing SSL/TLS certificates from ACME compliant certificate authorities. It allows you to automate certificate creation, renewal, and revocation directly from your Windows environment, making secure HTTPS configuration much easier. Think of it as your go-to tool for hassle-free certificate management in PowerShell.

## First register your new Account Binding provided to you
$eabKID = 'EAB_KID_HERE'
$eabHMAC = 'EAB_KEY_HERE'
New-PAAccount -ExtAcctKID $eabKID -ExtAcctHMACKey $eabHMAC -Contact 'me@example.com' -AcceptTOS

## Register the CA Server URL Set-PAServer -DirectoryUrl {SERVER_URL_HERE}
## Request new certificate for domain New-PACertificate example.com -AcceptTOS
# Renew all orders on the current account Submit-Renewal

You can read more about the Posh-ACME commands here.

Win-ACME is a robust, open-source ACME client specifically developed for Windows environments. It provides system administrators and IT professionals with a streamlined and automated solution for obtaining and deploying SSL/TLS certificates. The tool simplifies the complexities of certificate lifecycle management, encompassing request generation, domain validation, and certificate installation, thereby enhancing the security posture of Windows-based web services and applications with minimal administrative overhead.

## Execute the following command to auto-enroll certificate on IIS using WinACME client
wacs.exe --baseuri {SERVER_URL_HERE} --verbose \
--accepttos --emailaddress me@example.com --eab-keyidentifier {EAB_KID_HERE} \
--eab-key {EAB_KEY_HERE}

You can read more about the Win-ACME commands here.

Compare ACME SSL Certificate Features

Sectigo logoACME SSL CertificateVerokey logo
$ / year
$ Saved off Sectigo Prices
$ / year
$ Saved off Verokey Prices
Buy Now
DV
DV
1 - 500 Domains
Alternate Domain Included for Free
1 - 500 Domains
Alternate Domain Included for Free
The ACME SSL Certificate site seal
99% 99%
99% 99%
99% 99%
$500,000-
Up to 256-bit Up to 256-bit
RSA-2048 or Greater
ECC-233 or Greater
RSA-2048 or Greater
ECC-233 or Greater
SHA-256
SHA-256
30 Days 30 Days
Unlimited Unlimited
Unlimited Unlimited
$ / year
$ Saved off Sectigo Prices
$ / year
$ Saved off Verokey Prices
Buy Now

What our SSLTrust Customers say...

We strive hard to always bring the very best in customer service to our customers.

Ross Sheard.

5 out of 5 stars

I cannot speak highly enough of the SSLTRUST team and in particular of the efforts of Paul Baka, who is most attentive and knowledgeable on the subject of security certificates as used by small business such as ours! Well done SSLTRUST
Guy Hammond.

5 out of 5 stars

I obtained a DigiCert SHA-1 and SHA-2 code signing token from SSLTrust and code signed my software within six days of my order. I received a very prompt response from Paul Baka with very useful information as to how to complete the signing process. I would highly recommend SSLTrust to any software company, particularly if you are resident in Australia. Guy Hammond Southpac Financial Services Pty Ltd
N “wally” Wallace.

5 out of 5 stars

Easy SSL renewal & prompt follow up when I had a minor problem. Excellent pricing, would definitely recommend SSL Trust.
Shawn Wang.

5 out of 5 stars

Amazing service and very wonderful experience with SSLCertificate team!