With this DCV validation method, the CA (GeoTrust, DigiCert, etc.) sends emails associated with the domain to the public WHOIS contacts and a set of generic administrative email addresses (admin@, administrator@, hostmaster@, webmaster@, and postmaster@) with a link for you to verify that you “own” the domain and approve the pending certificate request.
When you place an SSL order and select Email Verification as the preferred DCV method, emails are instantly sent to a set of approved email addresses pulled in real-time from 3 approved sources.
Any WHOIS contact emails publicly viewable for the domain(s) in the certificate request. The emails can come from the registrant, admin, or tech contacts in a domain’s WHOIS record. WHOIS records are largely private, redacted, or otherwise hidden from public view since the GDRP privacy laws went into effect. WHOIS emails are an unreliable source for completing SSL domain control validation.
Any emails in the DNS record for
_validation-contactemail.[example.com]. Learn how to set up the Email to DNS TXT Contact DCV method.
Certificate Authorities (CAs) are permitted to send DCV verification emails to a set of 5 constructed or generic administrative email addresses. These addresses are constructed by joining together admin@, administrator@, hostmaster@, webmaster@, and postmaster@ to the domain(s) in the certificate request.
Suppose that you order a certificate for widgets.co.uk. Immediately after submitting your SSL order, emails are sent to firstname.lastname@example.org, email@example.com, firstname.lastname@example.org, email@example.com, and firstname.lastname@example.org.
You can re-send the approved set of DCV emails. Just login to your account and select the domain name you want where you need the emails re-sent.
It's perfectly fine to set up an email alias that forwards to your regular email address. For example, you can configure an emailIt’sas email@example.com to forward to firstname.lastname@example.org. As long as you can respond to the link in the DCV verification email it doesn't matter how it makes its way to you.
You choose the initial DCV method when placing an SSL/TLS order. You can change the current DCV method - for example, from Email Verification to DNS CNAME - at any time by clicking the button for any domain on the order that is not approved.
Please contact our support team if you have any additional problems or questions.