Entering the certificate and private key into the server

To be able to use your new server certificate, you must make it known to the server service. This is done in the configuration file of the service.

Since the certificate is a server certificate that can be used by several services, it should be stored in a central directory (e.g.: /etc/ssl/certs/).
The private key can be stored in /etc/ssl/private/. Please make sure that only root has read access to the private key.

Certificate chain

Certificates from »Sectigo«

As soon as a certificate you have requested is issued, you will receive an e-mail with download links. Under  »Available formats«, select a format that already contains the certificate chain.
For Apache / nginx »Certificate (w/ issuer after)« is offered, for Microsoft IIS »PKCS#7«.

In order for the configuration file to be read in again, the service must be restarted after installing the certificates.