Skip to main content

Apply cross-signed SSL certificate for Sectigo Public Server Authentication

May 7, 2026

Product Version

AhsayCBS: 9.15.2.16 and below

Operating System

All Platforms

Description

This article provides a self-service workaround for customers experiencing connection failures following the implementation of Sectigo Root R46 certificates on AhsayCBS. If you are using a legacy client version (prior to 9.15.2.16), your system may not natively recognize the new root authority. Follow the steps below to manually apply the necessary cross-signed certificate files and restore connectivity without requiring an immediate full client upgrade.

Solution

  1. In AhsayCBS, go to System Settings > Basic > General > SSL Certificate and click the certificate entry.

    Import the private key and Sectigo Public Server SSL.

    Do not upload the updated/new root intermediate certificate.
  2. Download the old root intermediate certificate that should be supported in older versions from here.
  3. Go back to System Settings > Basic > General > SSL Certificate and click the certificate entry. Then import the downloaded old root intermediate cert (SectigoRootR464OldCBS.crt) under CA Certificate then save.