> ## Documentation Index
> Fetch the complete documentation index at: https://help.enrolweb.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Activating Your SSL

> Activate your EnrolWeb SSL certificate by generating a CSR, submitting your domain and organization details, and completing validation.

After you buy an SSL certificate, activate it to start the issuance process. Activation involves generating a Certificate Signing Request (CSR), submitting your details, and completing domain (and organization) validation.

## Activation overview

<Steps>
  <Step title="Generate a CSR">
    Create a Certificate Signing Request on the server where you'll install the SSL.
  </Step>

  <Step title="Submit your CSR">
    Paste the CSR into your EnrolWeb SSL activation form along with contact details.
  </Step>

  <Step title="Choose validation method">
    Pick email, DNS, or HTTP-based domain validation.
  </Step>

  <Step title="Complete validation">
    Follow the steps for your chosen method to prove domain ownership.
  </Step>

  <Step title="Receive your certificate">
    Once issued, download your SSL certificate files to install.
  </Step>
</Steps>

## Generate a CSR

In cPanel:

<Steps>
  <Step title="Open SSL/TLS">
    In cPanel, open **SSL/TLS** under the Security section.
  </Step>

  <Step title="Generate a private key">
    Click **Private Keys**, then **Generate a New Private Key** with a 2048-bit or 4096-bit RSA key.
  </Step>

  <Step title="Generate the CSR">
    Click **Certificate Signing Requests**, choose the key, enter your organization info, and generate.
  </Step>

  <Step title="Copy the CSR">
    Copy the entire block including the `-----BEGIN CERTIFICATE REQUEST-----` and `-----END CERTIFICATE REQUEST-----` lines.
  </Step>
</Steps>

## Submit and choose validation

<Steps>
  <Step title="Open your SSL order">
    In your EnrolWeb dashboard, go to **SSL Certificates** and open your pending certificate.
  </Step>

  <Step title="Paste the CSR">
    Paste the full CSR into the activation form.
  </Step>

  <Step title="Enter contact info">
    Provide administrative and technical contacts (name, email, phone).
  </Step>

  <Step title="Pick a validation method">
    Choose from email, DNS, or HTTP validation.
  </Step>
</Steps>

## Domain validation methods

<CardGroup cols={2}>
  <Card title="Email validation" icon="envelope">
    Approve from an admin address on the domain (admin@, webmaster@, hostmaster@).
  </Card>

  <Card title="DNS validation" icon="server">
    Add a CNAME or TXT record with the value provided.
  </Card>

  <Card title="HTTP validation" icon="file">
    Upload a specific file to `.well-known/pki-validation/` on your site.
  </Card>
</CardGroup>

## Organization and Extended Validation

For OV and EV certificates, you'll also complete organization vetting:

* Provide business registration documents
* Verify a phone listing in a public directory
* For EV, complete a verification call with the Certificate Authority

<Note>
  DV certificates issue in minutes. OV takes 1-3 days. EV takes 1-7 days.
</Note>

## Next steps

Once issued, move on to \[Installing SSL]\(/SSL & Website Security/contact-2-2).

<Tip>
  Save your private key in a safe location. You'll need it during installation.
</Tip>

Trouble activating? Contact [support@enrolweb.com](mailto:support@enrolweb.com).
