Sectigo (ex Comodo) PositiveSSL
The Sectigo (ex Comodo) PositiveSSL certificate is a Domain Validated (DV) SSL product issued under Sectigo's root, formerly branded as Comodo, confirming only that the applicant controls the domain named on the certificate. It's one of the most widely deployed entry-level DV certificates available, suited to personal sites, blogs, and small projects that need basic encryption without organisation-level checks. Issuance is automated and typically completes within minutes once DNS, file, or email validation clears. It supports single-domain configurations and carries 2048-bit RSA encryption as standard.
The Sectigo (ex Comodo) PositiveSSL certificate is a Domain Validated (DV) SSL product issued under Sectigo's root, formerly branded as Comodo, confirming only that the applicant controls the domain named on the certificate. It's one of the most widely deployed entry-level DV certificates available, with no company registration or legal identity checks involved. It suits site owners who need basic, low-cost encryption on a single domain without organisation-level validation.
What Does Sectigo (ex Comodo) PositiveSSL Cover?
A Sectigo (ex Comodo) PositiveSSL certificate secures the single domain named at order, encrypting data in transit between server and browser only. It does not scan the site for malware, vulnerabilities, or code issues, and it makes no assessment of site content or reputation. Coverage has specific limits:
- It covers one domain per certificate; multiple unrelated domains require a Multi-Domain/SAN certificate.
- SSL for subdomains beyond the named domain isn't included — a separate PositiveSSL Wildcard certificate is needed to cover subdomains such as mail. or shop.
- No organisation or company name is displayed in the browser, since validation confirms domain control only.
A separate PositiveSSL Multi-Domain product exists in the same range for sites needing to cover several distinct domains under one certificate rather than one domain with subdomains; that product uses SAN entries rather than a wildcard structure.
Who Needs Sectigo (ex Comodo) PositiveSSL?
This certificate fits a personal blog or portfolio site, a small business landing page without an online store, an internal admin panel or staging environment, or a developer testing a new project domain before committing to a higher-tier certificate. It also suits a hosting reseller bundling low-cost DV SSL into shared hosting packages at scale. It is not suited to a payment gateway, a checkout page handling card data directly, or a site where visitors need to see a verified company name — those cases call for OV or EV validation instead.
Key Features of Sectigo (ex Comodo) PositiveSSL
- Validation type: DV only, confirmed via DNS record, HTTP file, or email to a domain-listed address.
- Encryption: 2048-bit RSA keys, SHA-256 signature algorithm.
- Issuance: typically within minutes after DNS or file validation clears.
- Coverage: single domain only, no subdomain coverage included.
- Reissue: unlimited during the validity period, at no extra charge.
- Warranty: included, amount fixed by Sectigo's certificate terms.
- Browser support: recognised across all current major browsers, no client-side root installation required.
The certificate does not include a static Site Seal by default, unlike some higher-tier products; a dynamic seal option may be available separately depending on the order. As with GlobalSign's DV lines, ECC key generation isn't offered on this product — only RSA — so sites specifically wanting ECC should look at a different certificate line.
How to Get Sectigo (ex Comodo) PositiveSSL: 3 Steps
- Generate a CSR (Certificate Signing Request) for the domain to be secured.
- Submit the CSR and complete DNS, file, or email validation to confirm domain control.
- Download the certificate and intermediate files once issued, and install them on your server.
To buy Sectigo (ex Comodo) PositiveSSL, select it from the DV category in the order form, alongside other DV Sectigo (ex Comodo) PositiveSSL products, and compare validity periods before confirming the order. Given the low cost of this certificate relative to OV and EV products, some site owners order it initially and upgrade to a validated certificate later once traffic or transaction volume justifies the additional verification.
If a domain changes ownership or is transferred to a different server, the certificate itself remains valid, since it's tied to domain control at the point of validation rather than to a specific hosting account; only the private key and installation need to move with it. Support during installation is generally limited to guidance rather than hands-on configuration, given the certificate's entry-level position in the product range.