Integration Overview

DigiCert CertCentral integrates with UltraDNS to automate DNS-based domain control validation (DCV), streamlining certificate issuance and renewal in preparation for shortened TLS certificate lifecycles, all with a single, centralized process. Eliminate manual DNS updates, reduce administrative overhead, and the risk of delays or misconfigurations that can lead to service outages or security gaps.

What it Does

  • Proprietary connection between CertCentral and UltraDNS automated domain validation management.
  • Automatically creates and removes DNS TXT records for domain control validation (DCV).
  • Monitors validation status in real time and updates certificate requests accordingly.
  • Enables administrators to pre-validate domains before issuance to meet 47-day TLS lifecycle requirements.
  • Eliminates manual DNS updates and reduces operational overhead for certificate issuance and renewal.

Why it Matters

  • Ensure readiness for short-lived certificates: Supports automation to comply with upcoming 47-day certificate validity and 10-day domain validation reuse limits.
  • Accelerated Certificate Issuance: Automates DCV record management, reducing time-to-issuance from hours to seconds.
  • Lower operational effort: Minimize administrator involvement in domain validation and renewal workflows.
  • Strengthen reliability: Improve accuracy and speed of domain validation in high-volume environments.
  • Improve Security Posture: Minimizes the risk of human error and misconfiguration in DNS entries that could introduce security vulnerabilities or cause outages.

How it Integrates

  • CertCentral connects to UltraDNS using secure API credentials configured in the CertCentral console.
  • When a certificate request requires domain validation, CertCentral automatically pushes the appropriate TXT record to UltraDNS.
  • UltraDNS publishes the record to complete DCV; CertCentral continuously monitors DNS responses until validation is confirmed.
  • Once validated, the certificate is automatically issued or renewed; TXT records can be removed or retained for policy compliance.