What Is Intermediate SSL Certificate & How To Install It?

SSL Certificate

As we know SSL (Secure Sockets Layer) is the standard security technology for establishing an encrypted link between a web server and a browser. It protects your customer's personal data including passwords, credit cards, and identity information. Getting an SSL certificate is the easiest way to increase your customer's confidence in your online business.

Intermediate SSL Certificate

It is a subordinate certificate, which is issued and signed by the trusted root certificate. It is signed specifically to issue end-entity server certificate. This results in a certificate chain, which begins at the trusted root Certificate Authority (issuer), through the intermediate. This certificate chain ends with the SSL certificate issued by the end-user. In simple words, proper SSL chain links certificate of an end-user to a root certificate.



Major web browsers have a list of trusted root certificates, which is the foundation of SSL certificate. This list ensures that the SSL certificate being issued is valid and trustworthy. It is important to understand that root certificate do not sign every certificate. In such a situation, intermediate certificates come into play. Intermediate certificate falls in between the root certificate and the end-user SSL certificate. It is basically used to sign SSL certificate of end-user, which is used on a website and completes the digital SSL security chain.

Testing Intermediate SSL Certificate after Installation

After successfully installing SSL certificate, it is important to check whether it has been installed properly and is working as required. ‘WHY NO PADLOCK’ service can check it for you. It:

• Verifies validations of intermediate SSL certificate

• Verifies START and END DATES (checks whether the date is current and not expired)

• Verifies whether the certificate is signed by a valid CA

• Verifies the SSL chain (all the certificates including intermediate certificate are installed properly)

• Checks for allowed SSL Protocols