Install a certificate you already own
Choose the website, supply the matching certificate and key, and understand mail coverage.
Where Tools → Security → SSL/TLS Certificates → Installation
Before you start
- Have the certificate (CRT), its matching private key (KEY), and any required intermediate CA bundle. A certificate and an unrelated key will not work together.
- Keep private-key material secret. Check the certificate covers every hostname you intend to secure.
Steps
-
1
Scroll past the installed list to Install an SSL Website. Select the intended Domain, or use Browse Certificates to select a certificate already stored in cPanel.
-
2
Supply Certificate Authority Bundle (CABUNDLE) when the certificate provider requires it or cPanel cannot obtain the chain automatically. Do not put the private key in the certificate field.
-
3
For an existing installation, Update Certificate opens its replacement workflow. Uninstall removes the installation and can break secure access; it is not necessary simply to inspect details.
-
4
Open SSL/TLS Certificates and choose Installation. Review Manage Installed SSL Websites before replacing an existing certificate.
Installation separates the existing SSL websites from the new installation form. -
5
Paste the issued certificate into Certificate (CRT), including its complete BEGIN/END lines. Provide the matching Private Key (KEY) if cPanel cannot retrieve it.
Scroll to Install an SSL Website and choose Domain before entering CRT and KEY. -
6
Review the domain and all fields, then click Install Certificate at the bottom. Reset clears the form; it is not the install button.
The lower form contains CABUNDLE and the final Install Certificate button.
Check it worked
- Check the success result and return to Status to verify issuer, expiry and hostnames.
- Test the website and any mail clients using covered names. For an error, recheck the certificate/key match and CA chain.