Apply cross-signed SSL certificate for Sectigo Public Server Authentication
May 7, 2026
Product Version
AhsayCBS: 9.15.2.16 and below
Operating System
All Platforms
Description
This article provides a self-service workaround for customers experiencing connection failures following the implementation of Sectigo Root R46 certificates on AhsayCBS. If you are using a legacy client version (prior to 9.15.2.16), your system may not natively recognize the new root authority. Follow the steps below to manually apply the necessary cross-signed certificate files and restore connectivity without requiring an immediate full client upgrade.
Solution
In AhsayCBS, go to System Settings > Basic > General > SSL Certificate and click the certificate entry.
Import the private key and Sectigo Public Server SSL.
Do not upload the updated/new root intermediate certificate.- Download the old root intermediate certificate that should be supported in older versions from here.
- Go back to System Settings > Basic > General > SSL Certificate and click the certificate entry. Then import the downloaded old root intermediate cert (SectigoRootR464OldCBS.crt) under CA Certificate then save.