Obtain Your Certificate as a Service (CaaS) Credentials

External Account Binding (EAB) credentials are the secure authentication keys that connect your Automatic Certificate Management Environment (ACME) client to your paid Trustico® Certificate as a Service (CaaS) license. Your client uses them to prove it is authorized to request SSL Certificates against your service.

You can view your credentials at any time from your ordering account. After you log in, the Certificate as a Service (CaaS) History page lists every Certificate as a Service (CaaS) license on the account, each with its dates, its status, and the values your ACME client needs to connect.

Note : To reach it, log in to the website, open the Your Account menu in the navigation at the top of the page, then choose Certificate as a Service (CaaS) History.

Beside each value on that page is a Copy link, so you can paste it straight into your client configuration without retyping. The credentials stay available there for the life of the license, rather than only for a short period after you order.

Reading Your License Details

Each license shows the four details an ACME client needs to connect : the ACME Account Identifier, the ACME Server address, your External Account Binding (EAB) Key Identifier, and your External Account Binding (EAB) Message Authentication Code (MAC) Key. Together these let your client register and issue SSL Certificates automatically. Learn About Supported ACME Clients 🔗

Alongside those values, each license shows its start and end dates, how long it runs, and how many days remain, together with a status such as Valid. This gives you a single place to confirm that your automated issuance is set against a license that is still active.

Extending Before Expiry

A Certificate as a Service (CaaS) license runs for a set period, and your SSL Certificates reissue automatically only while it is active. When a license can be extended, an Extend link appears beside its status on the same page.

Extend the license before it reaches its end date, so there is no gap in which your ACME client cannot reissue. Watching the days remaining on the history page is the simplest way to stay ahead of it. Learn About License Extensions 🔗

Your E-Mail Record

After every Certificate as a Service (CaaS) order, the same credentials and details are also sent to you by e-mail. Keep that e-mail somewhere safe, since it is a reliable record you can return to whenever you need the values again.

Authenticating Your ACME Client

External Account Binding (EAB) credentials authenticate your Automatic Certificate Management Environment (ACME) client during account registration. When your client first connects to our server, it uses your External Account Binding (EAB) Key Identifier and External Account Binding (EAB) Message Authentication Code (MAC) Key to prove it is authorized to use your paid service.

Once your client is registered with these credentials, it can request and reissue your SSL Certificates automatically for as long as the Certificate as a Service (CaaS) license remains active. Learn About External Account Binding (EAB) Credentials 🔗

Using Your Credentials

With your credentials copied from the history page and set in your ACME client, your SSL Certificates are issued and reissued automatically for the life of the license. There is nothing further to retrieve unless you move to a different client or set up a new server. Explore Certificate as a Service (CaaS) 🔗

Certificate as a Service (CaaS) - Pricing

Trustico® Certificate as a Service (CaaS) provides automated SSL Certificate issuance through the Automated Certificate Management Environment (ACME) protocol. The table below shows the price for each Certificate as a Service (CaaS) product.

Product Name Supplier List Price Your Price
Trustico® CaaS DV Single Site 🔗
$159.00 CAD
$89.00 CAD Save 44%
Trustico® CaaS DV + Wildcard 🔗
$791.00 CAD
$357.00 CAD Save 55%
Trustico® CaaS DV + Multi Domain 🔗
$158.50 CAD
$89.50 CAD Save 44%
Trustico® CaaS DV + Wildcard + Multi Domain 🔗
$790.50 CAD
$356.50 CAD Save 55%
Sectigo® CaaS DV Single Site 🔗
$144.00 CAD
$105.00 CAD Save 27%
Sectigo® CaaS DV + Wildcard 🔗
$719.00 CAD
$417.00 CAD Save 42%
Sectigo® CaaS DV + Multi Domain 🔗
$144.00 CAD
$104.33 CAD Save 28%
Sectigo® CaaS DV + Wildcard + Multi Domain 🔗
$718.67 CAD
$416.67 CAD Save 42%

*Multi-Domain SSL Certificate pricing is displayed per Subject Alternative Name (SAN). Each Multi-Domain product has its own minimum number of Subject Alternative Names (SANs) that are included or required to be purchased, and this minimum differs between products.

Sectigo® CaaS DV Single Site vs Wildcard Comparison

Certificate as a Service (CaaS) provides automated SSL Certificate management through APIs. Choose Single Site for individual domain automation, or Wildcard for comprehensive subdomain coverage with full API-driven SSL Certificate lifecycle management.

Feature Sectigo® CaaS DV Single Site Sectigo® CaaS DV + Wildcard
Service Type Certificate as a Service (CaaS) Certificate as a Service (CaaS)
Coverage Single Domain Only Unlimited Subdomains
Domains Covered www.example.com + example.com *.example.com + example.com
Automation Level Fully Automated Fully Automated
API Access Full RESTful API Full RESTful API
Validation Level Domain Validation (DV) Domain Validation (DV)
Validation Methods E-Mail / DNS / HTTP / HTTPS E-Mail / DNS / HTTP / HTTPS
Issuance Time Very Fast! Issued Within Minutes Very Fast! Issued Within Minutes
Auto-Renewal Automated Renewal Available Automated Renewal Available
Certificate Management Centralized Dashboard Centralized Dashboard
Integration Options API, Webhooks, SDK API, Webhooks, SDK
Ideal For SaaS Platforms, Single Domain Apps Multi-Tenant SaaS, Complex Infrastructures
Scalability Per-Domain Scaling Automatic Subdomain Coverage
Warranty $500,000 USD $500,000 USD
Encryption Strength 256-bit SSL Encryption 256-bit SSL Encryption
Browser Compatibility 99.9% Browser Trust 99.9% Browser Trust
Dual Domain Coverage Includes Root Domain SAN Free! Includes Root Domain SAN Free!
Reissues Unlimited Unlimited
Deployment Options Cloud, On-Premise, Hybrid Cloud, On-Premise, Hybrid
Information Page Product Information Page 🔗 Product Information Page 🔗
Your Trustico® Price $105.00 CAD $417.00 CAD
Purchase Options Instant - Buy Now 🔗 Instant - Buy Now 🔗

Most Popular Questions

Frequently asked questions covering what External Account Binding (EAB) credentials are, where to find them on the Certificate as a Service (CaaS) History page after logging in, the values shown for each license, extending a license before it expires, and the e-mail record sent after each order

External Account Binding (EAB) Credentials Explained

External Account Binding (EAB) credentials are secure authentication keys made up of a Key Identifier and a Message Authentication Code (MAC) Key. They connect your Automatic Certificate Management Environment (ACME) client to your paid Trustico® Certificate as a Service (CaaS) license and prove the client is authorized to request SSL Certificates.

Finding Your Credentials

Log in to the website, open the Your Account menu, and choose Certificate as a Service (CaaS) History. The page lists every Certificate as a Service (CaaS) license on the account, and each one shows the values your Automatic Certificate Management Environment (ACME) client needs, with a Copy link beside each.

Details Held Against Each License

Each license shows its dates and status, along with the four values a client needs to connect : the ACME Account Identifier, the ACME Server address, the External Account Binding (EAB) Key Identifier, and the External Account Binding (EAB) Message Authentication Code (MAC) Key. A Copy link beside each value pastes it straight into your client configuration.

Extending Your License Before Expiry

While a Certificate as a Service (CaaS) license can be extended, an Extend link appears beside its status on the history page. Extend it before the end date so your Automatic Certificate Management Environment (ACME) client can keep reissuing without a gap in cover.

E-Mail Record After Each Order

After every Certificate as a Service (CaaS) order, the same credentials and details are also sent to you by e-mail. Keep that e-mail somewhere safe, since it is a reliable record you can return to whenever you need the values again.

Credentials During Client Registration

When your Automatic Certificate Management Environment (ACME) client first connects to our server during registration, it uses your External Account Binding (EAB) Key Identifier and Message Authentication Code (MAC) Key to authenticate. This confirms the client is authorized to use your paid Certificate as a Service (CaaS) license before any SSL Certificate is issued.