Knowledge Base

Restoring Renewal and Replacement Using a Superseding Certificate Profile in Sectigo Certificate Manager(SCM)

 

Overview

When a certificate profile is deleted and no replacement is assigned, renewal and replacement are blocked for every certificate issued from that profile. The certificates stay valid until they expire, but those lifecycle actions cannot be completed. In Sectigo Certificate Manager (SCM), the Superseding Certificate Profile feature lets an administrator point the deleted profile at a new active profile, which restores renewal and replacement. This article shows how to display the deleted profile, open it for editing, and assign a superseding profile in four steps.

Steps to configure a Superseding Certificate Profile

Step 1 — Navigate to Certificate Profiles

Log in to Sectigo Certificate Manager. From the left navigation menu, go to Enrollment → Certificate Profiles. The Certificate Profiles table appears.

Certificate Profiles list in SCM with Certificate Profiles selected under Enrollment in the left menuCertificate Profiles list in SCM with Certificate Profiles selected under Enrollment in the left menu

Figure 1: Certificate Profiles list in SCM, with Certificate Profiles selected under Enrollment in the left menu.

Step 2 — Show deleted profiles

Click the Filter icon at the top right of the table. Enable Include deleted, then click Apply. The deleted certificate profiles now appear in the list.

Certificate Profiles filter panel with Include deleted selected, ready to ApplyCertificate Profiles filter panel with Include deleted selected, ready to Apply

Figure 2: Certificate Profiles filter panel with “Include deleted” selected, ready to Apply.

Step 3 — Select the deleted profile

Locate the deleted certificate profile and select the checkbox next to it, then click Edit. The Edit Deleted SSL Certificate Profile window opens.

A deleted profile selected with Edit clicked, opening the Edit Deleted SSL Certificate Profile windowA deleted profile selected with Edit clicked, opening the Edit Deleted SSL Certificate Profile window

Figure 3: A deleted profile selected with Edit clicked, opening the Edit Deleted SSL Certificate Profile window.

Step 4 — Assign a Superseding Certificate Profile

In the Edit Deleted SSL Certificate Profile window, click the pencil icon on the right. In the configuration window, select an existing active certificate profile to act as the Superseding Certificate Profile, then save your changes. The selected profile is now used in place of the deleted one.

Edit Deleted SSL Certificate Profile Details window with an active profile chosen as the Superseding Certificate ProfileEdit Deleted SSL Certificate Profile Details window with an active profile chosen as the Superseding Certificate Profile

Figure 4: The Edit Deleted SSL Certificate Profile Details window with an active profile chosen as the Superseding Certificate Profile.

Edit Deleted SSL Certificate Profile window confirming the superseding profile before savingEdit Deleted SSL Certificate Profile window confirming the superseding profile before saving

Figure 5: The Edit Deleted SSL Certificate Profile window confirming the superseding profile before saving.

Result

After you configure the Superseding Certificate Profile:

  • Certificates that previously depended on the deleted profile now use the new superseding profile.

  • Renewal and replacement operations function normally again.

  • No further configuration is required for the affected certificates.

Need assistance?

Contact our team for help with your purchase or issuing your certificate.

Live chat

Call us today