# Ssl certificate import problem

**URL:** <https://community.wowza.com/t/ssl-certificate-import-problem/33844>\
**Category:** Wowza Streaming Engine\
**Tags:** server-administration\
**Created:** [December 3, 2016, 10:49am UTC](https://community.wowza.com/t/ssl-certificate-import-problem/33844 "2016-12-03T10:49:47Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![ceyhun\_ceyhun](https://avatars.discourse-cdn.com/v4/letter/c/7bcc69/32.png) [@ceyhun\_ceyhun](https://community.wowza.com/u/ceyhun_ceyhun)\
**Post date:** [December 3, 2016, 10:49am UTC](https://community.wowza.com/t/ssl-certificate-import-problem/33844/1 "2016-12-03T10:49:47Z")

</div>

Hi

I have a problem about SSL certificate import

C:\Program Files\Java\jdk1.7.0\_45\bin\>keytool -import -alias root -trustcacerts -file ServerCertificate.cer -keystore ssl.mycompany.com.jks

when i was run this command Certificate wass added to key store but not work.

Trust this certificate? [no]: yes

Certificate was added to keystore

My SSL buyed from Rapid SSL company, Open SSL Apache, Tomcat.

First i was try the self signed certificate , now when install this radip ssl certificate wowza work with self signed ssl

where can i delete that self signed certificate ? In 3 day’s i was work about this problem, and search forum :(( but nothing .

---

<div class="post-metadata">

**Author:** ![Andrew\_Ramberg](https://avatars.discourse-cdn.com/v4/letter/a/7c8e57/32.png) [@Andrew\_Ramberg](https://community.wowza.com/u/Andrew_Ramberg)\
**Post date:** [December 19, 2016, 2:57pm UTC](https://community.wowza.com/t/ssl-certificate-import-problem/33844/2 "2016-12-19T14:57:43Z")

</div>

Hello,

If you used a self-signed certificate, this would have been created within a keystore. Be sure the new keystore is properly defined in the [install-dir]/conf/VHosts.xml file.

When you follow the [instructions](https://www.wowza.com/docs/how-to-request-an-ssl-certificate-from-a-certificate-authority) for generating and importing a certificate, this will create a new keystore that should be used with your VHosts.xml configuration.

The Java keystore will require a private key certificate (generated in the keystore with the CSR generation steps), a signed certificate returned from the CA with your CSR submission and intermediary certificates or CA bundles.

You may find the steps in the [SSL troubleshooting article](https://www.wowza.com/docs/how-to-troubleshoot-ssl-certificate-configuration#keystorecontents) helpful, when verifying these certificates have been imported properly.

Best regards,

Andrew

---

<div class="post-metadata">

**Author:** ![Bhim\_Hewy](https://avatars.discourse-cdn.com/v4/letter/b/ce7236/32.png) [@Bhim\_Hewy](https://community.wowza.com/u/Bhim_Hewy)\
**Post date:** [September 23, 2019, 12:02pm UTC](https://community.wowza.com/t/ssl-certificate-import-problem/33844/3 "2019-09-23T12:02:47Z")

</div>

what If I have 2 certificates? How to add both ?

---

<div class="post-metadata">

**Author:** ![system](https://sea2.discourse-cdn.com/flex002/user_avatar/community.wowza.com/system/32/447_2.png) [@system](https://community.wowza.com/u/system)\
**Post date:** [September 23, 2019, 6:10pm UTC](https://community.wowza.com/t/ssl-certificate-import-problem/33844/4 "2019-09-23T18:10:33Z")

</div>

We actually have an article on how to do this. It can be found at the link below.

[https://www.wowza.com/docs/how-to-configure-multiple-ssl-certificates-per-domain-on-a-single-host-port-sni](https://www.wowza.com/docs/how-to-configure-multiple-ssl-certificates-per-domain-on-a-single-host-port-sni)

If that does not work for you then please open a ticket as Rose Power mentioned above.
