InCommon - Frequently Asked Questions
Who is eligible to purchase an InCommon certificate?
Are students eligible to purchase InCommon certificates?
How do I purchase InCommon certificates?
How do I start using my InCommon certificate?
I have a multidomain SSL certificate and want to add additional names to it. Who should I contact?
If I am from UPHS, who would I work with to get an InCommon certificate?
How do I get support for an InCommon SSL certificate issue?
Who is eligible to purchase an InCommon certificate?
This software is licensed by the University of Pennsylvania and is restricted to Institutional use only by Penn faculty and staff, as well as faculty and staff of Penn Medicine, for Penn-related academic use or for Penn-related academic research on a Penn-owned computer.
Are students eligible to purchase InCommon certificates?
No, students are not eligible.
How do I purchase InCommon certificates?
OSL has developed a new Kivuto Licensing Portal that allows for orders to be placed for this and most other software titles, allowing payment via BEN budget code. Please visit the How to Order page for directions.
How do I start using my InCommon certificate?
After you purchase InCommon, instructions on how to download and install the software will be provided on the Kivuto Website. Those instructions are reprinted below for your convenience:
InCommon License Setup Instructions:
- Go to the InCommon Certificate Manager page.
- Click the green button below to download a list of Access Codes. Enter the Access Code that corresponds with the email address associated with your domain, and then enter your full email address (e.g. enter "This email address is being protected from spambots. You need JavaScript enabled to view it." or "This email address is being protected from spambots. You need JavaScript enabled to view it.", and not "This email address is being protected from spambots. You need JavaScript enabled to view it." or "This email address is being protected from spambots. You need JavaScript enabled to view it.").
- Click "Check Access Code."
- Choose the certificate type and use the one (1) year certificate term.
- Create a new CSR on your server, copy it and paste it into the CSR box. If you need information on how to create a CSR, talk to your IT Support team.
- Make sure your Common Name appears in the Common Name field.
- Note: Leave the Auto Renew box unchecked, leaving the number of "days before expiration" blank.
- (Optional) - enter an Annual Renewal Passphrase of your choosing.
- (Optional, but helpful to specify groups or people within an organization): Add an External Requester that further identifies you.
- Add information to Comments if you wish.
- Click “Enroll”
Once your request is submitted on the InCommon site, your certificate will be approved by OSL and you will a receive confirmation email from OSL with a link to obtain your certificate from InCommon
I have a multidomain SSL certificate and want to add additional names to it. Who should I contact?
Please send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. with your list of additional domain names. Each name should be single-spaced and separated by a comma. OSL will then edit your existing certificate with the additional domains, and a new certificate will be emailed to you by InCommon.
If I am from UPHS, who would I work with to get an InCommon certificate?
Mike Moran is the Information Security Officer at UPHS. He can be reached at This email address is being protected from spambots. You need JavaScript enabled to view it..
How do I get support for an InCommon SSL certificate issue?
Please contact OSL at This email address is being protected from spambots. You need JavaScript enabled to view it. and we will be able to contact Sectigo InCommon support on your behalf.