Skip to content

Install a certificate you already own

Choose the website, supply the matching certificate and key, and understand mail coverage.

Where Tools → Security → SSL/TLS Certificates → Installation

Before you start

  • Have the certificate (CRT), its matching private key (KEY), and any required intermediate CA bundle. A certificate and an unrelated key will not work together.
  • Keep private-key material secret. Check the certificate covers every hostname you intend to secure.

Steps

  1. 1

    Scroll past the installed list to Install an SSL Website. Select the intended Domain, or use Browse Certificates to select a certificate already stored in cPanel.

  2. 2

    Supply Certificate Authority Bundle (CABUNDLE) when the certificate provider requires it or cPanel cannot obtain the chain automatically. Do not put the private key in the certificate field.

  3. 3

    For an existing installation, Update Certificate opens its replacement workflow. Uninstall removes the installation and can break secure access; it is not necessary simply to inspect details.

  4. 4

    Open SSL/TLS Certificates and choose Installation. Review Manage Installed SSL Websites before replacing an existing certificate.

    Installation separates the existing SSL websites from the new installation form.
  5. 5

    Paste the issued certificate into Certificate (CRT), including its complete BEGIN/END lines. Provide the matching Private Key (KEY) if cPanel cannot retrieve it.

    Scroll to Install an SSL Website and choose Domain before entering CRT and KEY.
  6. 6

    Review the domain and all fields, then click Install Certificate at the bottom. Reset clears the form; it is not the install button.

    The lower form contains CABUNDLE and the final Install Certificate button.

Check it worked

  • Check the success result and return to Status to verify issuer, expiry and hostnames.
  • Test the website and any mail clients using covered names. For an error, recheck the certificate/key match and CA chain.