An SSL request can fail even when the domain registration is active. The certificate provider must validate the names included in the request.
Steps
- Confirm that the domain and any requested subdomains point to the intended service.
- Check whether an external DNS provider or proxy is involved and whether CAA records permit the chosen certificate authority.
- Read the failure message in the Control Panel or Client Portal. Record the domain, time, and message for Support.
- Allow a pending request to finish and respect any retry limit. Once issued, test HTTPS and confirm automatic renewal is enabled.
Good to know
An expired certificate should not be accepted as trusted in your browser. A transfer lock does not prevent certificate issuance. If the public site and hosting certificate differ, a proxy may be presenting a separate certificate.
Need help? Open a support ticket and include your domain and the step where you need assistance. Never include your password.