A Comodo Positive Wildcard SSL certificate purchased from SSL2buy.com does not come with the private key. You must use the private key generated from the device that issued the CSR. In my case I had generated the CSR from a Ruckus Access Point from where I was able to download the private_key.pem file. SSLshopper.com provides an online utility that will convert the private key.pem file to a .pfx/pkcs file.

You have to generate a new certificate request and certificate for every device where the you want to use your wildcard certificate.

Generating a new certificate will not revoke or replace any previous certificates.

To accomplish this, you must provide the certificate you have downloaded from your certificate authority as well as the .pem file you have stored locally.

  • Total time: 5 minutes
  • Estimated cost: 0
  • Tools used: Purchased Certificate file, local private key pem file

Step 1: Access Certificate file *.cer

Make sure you have the correct certificate that is linked to the correct private key pem file.

If you have purchased the certificate you should be able to login to your account where you purchased the certificate and download the certificate again if you need to do that, but you must have access to the .pem file that was created when you generated the original CSR to create the certificate.

Step 2: Open SSL converter utility

Go to SSL Converter - Convert SSL Certificates to different formats website.

Click on the “Choose File” button under “Certificate File to Convert” and select the *.cer file you download from your CA.

Type of Current Certificate select “Standard PEM”

Type to convert to select “PFX/PKCS#12”

Step 3: Convert PEM to PFX

When you select the “PFX/PKCS#12” option you will see additional fields provided to you.

Click the Choose File button under “Private Key File” and point to where you have your locally stored .pem or .key file. Leave the “Chain Certificate File” fields blank.

PFX Password - Enter a password for your new .pfx file and click “Convert Certificate”.

Step 4: Download *.pfx file

After you click “Convert Certificate” you should get the Open or Save File options from your web browser. Select Save File and store the new *.pfx file to a secure location on your network.

11 Spice ups