About TLS Server Certificate
TLS Certificates are small data files that digitally bind a cryptographic key to an organization’s details. When installed on a web server, it activates the padlock and the https protocol and allows secure connections from a web server to a browser. Typically, TLS is used to secure credit card transactions, data transfer and logins, and more recently is becoming the norm when securing browsing of social media sites. TLS certificate bins together a domain-name (server-name or hostname), an organizational identity (i.e. company name) and location.
How it works?
This particular kind of cryptography harnesses the power of two keys which are long strings of randomly generated numbers. One is called a private key and one is called a public key. A public key is known to your server and available in the public domain. It can be used to encrypt any message. If Alice is sending a message to Bob she will lock it with Bob’s public key but the only way it can be decrypted is to unlock it with Bob’s private key. Bob is the only one who has his private key so Bob is the only one who can use this to unlock Alice’s message. If a hacker intercepts the message before Bob unlocks it, all they will get is a cryptographic code that they cannot break, even with the power of a computer. If we look at this in terms of a website, the communication is happening between a website and a server. Your website and server are Alice and Bob.
Need of TLS Server Certificate?
- Keep data secure between servers
- Build/Enhance customer trust
- Improve conversion rates
- Increase your Google Rankings
How to apply for the TLS Server Certificate?
entity shall be enrolled at TS's Web RA portal before they are able to apply for certificates from either TS Issuing CA or Device CA. The Government entity performs the following steps to share the needed details with TS RA:
- A representative from the entity contacts TS by sending an email to Registration.authority@techsource.iq
- The entity representative expresses the entity needs in the email
- TS RA responds with the necessary information needed from the entity representative
- The entity representative is required to fill and submit a form to TS RA
Once the entity has been registered with the TS, the entity representative can fill and submit the certificate application form
How to revoke TLS Certificate
An authorized applicant representative may request a certificate revocation under the following circumstances, ranging from routine administrative updates to critical security compromises:
1. Security and Key Compromise
- Private Key Compromise: Clear evidence or suspicion exists that the Private Key has been lost, stolen, modified, or accessed by an unauthorized person.
2. Information Changes and Inaccuracies
- Inaccurate Information: Information appearing in the certificate is determined to be inaccurate, outdated, or misleading.
- Material Changes: A material change occurs in the information contained within the certificate (such as a change in the legal name of the entity).
- Loss of Domain or IP Control: The Subscriber no longer legally owns or controls the Domain Name or IP address listed in the certificate (relevant for TLS/SSL components).
3. Compliance and Misuse
- Violation of Agreements: The Subscriber has violated one or more material obligations under the Subscriber Agreement or Terms of Use.
- Unauthorized Issuance: It is discovered that the original certificate request was not actually authorized by the entity.
The Revocation Process Steps
- An applicant representative from the entity downloads the official Revocation Request Form from this link: Revocation Request Form
- The entity authorized representative signs the revocation request form and fills out the certificate revocation information.
- The entity representative submits the signed form and required documents to the TS RA.
- The entity applicant representative submits a revocation request via the WebRA portal.
- TS RA may communicate with the entity via telephone, email, or courier service to confirm that the official representative authorized the revocation operation.
- TS RA validates the revocation information, performs any required investigation, and executes the certificate revocation request.
© 2026 Technology Source. All Rights Reserved | TS IT Department | info@Techsource.iq
