Download Certificate Chain Order PNG

Download Certificate Chain Order PNG. The difference between the root certificate, intermediate certificates, and server certificate. The original order is in fact backwards.

Digital Certificates
Digital Certificates from publib.boulder.ibm.com
In our example, the ssl certificate chain is represented by 6 certificates In computer security, a chain of trust is established by validating each component of hardware and software from the end entity up to the root certificate. The original order is in fact backwards.

In our example, the ssl certificate chain is represented by 6 certificates

To complicate matters, some browsers cache intermediate certificates, or download. This certificate is used to sign ocsp responses for the let's encrypt authority intermediates, so that we don't need to bring the root key online in order to sign those responses. Whm requires the order of the ca certificates to be in the opposite order (primary at the top and one who showed problems in the chain was: They use so called intermediate certificates instead, because these can be rotated more frequently.