Hey, is it possible to do this, choosing which challenge I want to use? I am looking to test this out tommorow so I was just curious, is possible to transfer everything using CSV import so new domains and certs?
Basically, I am trying to transfer 100 domains and certs to different IIS
Hi, you can use the CSV import for HTTP challenges but not for DNS challenges as they are simply too complex.
To import a large batch of sites with DNS challenges you need to use the JSON template option: Command Line (CLI) | Certify The Web Docs that mainly involves preparing a json template based on an existing managed certificate, which require you to list the existing managed certs as json, then extract one for your template.
Note also that the unlicensed Community Edition does not support batch imports, because it has a limit of a few managed certificates per install, so this feature only works on a licensed version, which you may or may not have already.
Thank you a lot for that information, so hypothetically If I want to move 100 certs to new machines, what would you recommend in that case? The least painful thing to do, there are wild certs too. Thank you
also, if I move those certs, and request new cert with certify will old one just revoke automatically or it’s only revoking when I do it manually?
Are these certs that are already managed by Certify Certificate Manager? If so there is the Import/Export option: Import & Export | Certify The Web Docs
If they are managed by something else, then are they all domains with the same DNS provider credentials?
You do not need to revoke certificates unless the private key is compromised (someone else knows it). The CA will let you create a new certificate on a different machine, it’s only if you create many duplicates that you will start to experience CA rate limits, and there is always the option of using different CAs.
In general whichever method you choose you will need to practise the migration as you will inevitably find various issues along the way moving sites from one server to another.
If they are all different websites we would normally suggest moving them in batches, e.g. 10 at a time and in that case even manually recreating the managed certificates would only take 20 minutes or so for each batch.
Let’s say that they were not managed by Certify but they are all domains with the same DNS provider, what would be solution then?
About revocation (i know i don’t need), the question was more like, will it automatically revoke since I’m moving it?
Thank you for your answer, I am really grateful
That’s fine if they’re not managed by Certify (they might be win-acme or something else) but it will depend who your DNS provider is as to how easily you can bulk import configuration, some providers use ZoneIDs (one per DNS zone) and some don’t.
For that ones that do use a Zone ID (you’ll know by configuring a test cert in the app) you’ll need to find the zone id for each domain.
Regarding revokes, no nothing is automatically revoked and you don’t need to do that, there is normally no benefit (the CA won’t give you extra certificate allowances just because you’ve revoked your previous cert etc).
One last question, is import/export free on certify the web? We are thinking of paying anyway but i’m curious if we can test export/import before
@kux sorry it’s not enabled in the community edition. If you purchase a license key then decide (within a month or two) it’s not going to work for you just contact support {at} certifytheweb.com
and we can refund.