Reading Time: < 1 minute
A man holding a pen writing on a certificate paper

InCommon
Certificate Service

One annual fee for unlimited server and public certificates.

Community-developed for Efficiency

Unlimited TLS server certificates for one annual fee, covering all of your domains. Central management with a delegated workflow.

icon-arrow-blue

Predictable: Unlimited certificates for a fixed annual fee takes the guesswork out of budgeting (and Internet2 members receive a 25% discount).

icon-arrow-blue

Community Driven: TLS server and IGTF grid computing server certificates designed for Higher Education and Research Organizations. S/MIME and EV Code Signing certificates are also available for purchase.

icon-arrow-blue

Be a hero: With our one fixed-fee structure, you have the flexibility to distribute TLS server and IGTF grid computing certificates broadly across your institution without per-certificate costs. This allows you to offer valuable, self-serve resources to schools and departments at no additional charge, which your decentralized IT Admins will love!

icon-arrow-blue

Easy to manage: Using the CertiNext Certificate Lifecycle Manager (CLM) makes it easy to request, install, revoke, and report on certificates in your organization.

icon-arrow-blue

Automate certificates: Get ready for 47-day certificate renewals! Automation saves you time and can pay off when you need to make quick changes.

icon-arrow-blue

Meet Our Platform Provider, CertiNext: CertiNext, powered by eMudhra, is the certificate service provider behind InCommon’s SSL/TLS and S/MIME certificate offerings — bringing globally trusted, ACME-enabled certificate management to higher education and research institutions across the United States. Learn more in the Quick Links below.

Additional Product Offerings

Product Description
“Basic” (Mailbox validated) S/MIME certificates
  • A bundle of 10 publicly trusted, email-address-validated user certificates.
  • Current validity period: 1 year (365 days)
  • These user/client certs are only used for email and client auth.
  • In the interim, S/MIME certificates will continue to be issued from Sectigo roots (via CERTInext) as the trust root. This will ensure uninterrupted compatibility and a seamless trust chain across all existing email environments.
EV Code Signing certificate
  • One publicly trusted, extended validation code signing certificate.
  • Current validity period: 1 year (365 days)

Subscribe to the Certificate Service

Multiple options to support the Automated Certificate Management Environment (ACME) deployment