OV Detailed Validation Guide

When you purchase an Organization Validation (OV) SSL Certificate from Trustico® you will need to complete a validation process before your SSL Certificate can be issued. This process verifies that your organization is a legally registered and legitimate business entity. Understanding the validation requirements in advance helps ensure a smooth and efficient issuance process, typically completed within one to three business days.

Trustico® provides Organization Validation (OV) SSL Certificates through our trusted Certificate Authority (CA) partners. The validation process is conducted by the Certificate Authority (CA) to confirm your organization's identity and legitimacy before issuing your SSL Certificate. This page explains each step of the validation process and provides guidance on how to prepare your organization's information for faster issuance. Learn About Organization Validation (OV) SSL Certificates 🔗

Understanding Organization Validation (OV)

Organization Validation (OV) SSL Certificates provide a higher level of trust than Domain Validation (DV) SSL Certificates by authenticating not only domain ownership but also the identity and legitimacy of the organization requesting the SSL Certificate. When a Certificate Authority (CA) issues an Organization Validation (OV) SSL Certificate, they verify that your business is legally registered, operates at the stated location, and has control over the domain being secured.

This additional verification makes Organization Validation (OV) SSL Certificates suitable for public-facing websites that represent companies and organizations. Your verified organization details are embedded within the SSL Certificate, allowing visitors to view your authenticated business information when they inspect the SSL Certificate details. This transparency helps build customer trust and confidence in your website. Discover Domain Validation (DV) SSL Certificates 🔗

Validation Requirements Overview

The Organization Validation (OV) process consists of several verification steps that confirm your organization's legal status, physical location, telephone listing, and domain ownership. Each step must be completed successfully before your SSL Certificate can be issued. The following sections explain each requirement in detail and provide tips for ensuring your information is ready for verification.

Organization Verification

The Certificate Authority (CA) will verify that your organization is legally registered and in good standing with the relevant government authority in your state or country. This verification is typically performed using government databases or trusted third-party sources such as Dun and Bradstreet, GLEIF, Bloomberg, or Hoovers. It is essential that the organization name you provide during your SSL Certificate order matches your official legal registration exactly, including any corporate identifiers such as Ltd, LLC, Inc, Pty Ltd, or GmbH.

If your government registration database is not accessible online, you may need to provide official registration documents such as Articles of Incorporation, a Business Licence, or a Certificate of Good Standing. Ensure all registration details are current and accurate before placing your order to avoid delays.

Locality Verification

The Certificate Authority (CA) will verify that your organization has a legitimate physical presence at the address provided. This address must be a genuine business location where your organization conducts operations. You cannot use a PO Box, mail forwarding address, virtual office address, or registered agent address for Organization Validation (OV) SSL Certificates.

The physical address is typically verified through government registration databases or third-party business directories. Ensure the address on your SSL Certificate order matches the address registered with your government authority and any business directory listings.

Telephone Verification

Your organization must have an active telephone listing that is verifiable through an online telephone directory or third-party database. The telephone listing must match your exact business name and physical address as verified in the previous steps. This telephone number will be used for the final verification callback, so it is important that an authorised representative of your organization is available to answer calls on this number.

If your telephone number cannot be found in a public directory, it may be verified through third-party databases such as Dun and Bradstreet. Alternatively, you may need to provide a Legal Opinion Letter that includes your verified telephone number.

Domain Control Validation (DCV)

You must demonstrate that your organization has control over the domain name being secured by the SSL Certificate. Domain Control Validation (DCV) can be completed using one of three methods. The first method is e-mail validation, where an approval e-mail is sent to an authorised e-mail address associated with your domain. The second method is Domain Name System (DNS) validation, where you add a specific CNAME record to your domain's Domain Name System (DNS) zone. The third method is HTTP or HTTPS file-based validation, where you place a specific validation file on your web server.

Trustico® recommends using Domain Name System (DNS) validation as it provides the most reliable method and is recommended for organizations preparing for shorter-lifetime SSL Certificates. It is important to note that WHOIS-based domain validation is no longer accepted as of June 2025. Explore The Validation Procedure 🔗

Final Verification Callback

The final step of the Organization Validation (OV) process is a telephone callback from the Certificate Authority (CA) to the verified telephone number associated with your organization. During this call, the validation specialist will confirm that the SSL Certificate order was placed by an authorised representative of your organization. You or an authorised site administrator must be available to answer this call.

Prior to the callback, you will receive a Subscriber Agreement via e-mail to the administrative contact e-mail address provided with your order. You must complete this agreement with your real name and title. Completing the agreement accurately and promptly may help expedite the callback verification step.

Preparing for Organization Validation (OV)

Taking time to prepare your organization's information before placing your SSL Certificate order can significantly reduce the time required for validation. The following guidance will help ensure your information is ready for verification.

Verify Your Business Registration

Before ordering your Organization Validation (OV) SSL Certificate, confirm that your organization's registration with the relevant government authority is current and accurate. Check that your registered business name, address, and registration number are up to date. If any information has changed, update your registration before placing your order.

Search for your organization in government databases and business directories to see what information is publicly available. The Certificate Authority (CA) will use these sources to verify your organization, so it is important that all listings contain accurate and consistent information.

Update Business Directory Listings

Ensure your organization is listed in major business directories such as Dun and Bradstreet with accurate contact information. Your listing should include your full legal business name exactly as registered, your physical business address, and your main business telephone number. Consistent information across all directories makes verification faster and easier.

If your organization is not listed in any business directories, consider creating a listing with Dun and Bradstreet before placing your order. This can significantly expedite the validation process.

Ensure Telephone Availability

The verification callback is a mandatory step that cannot be skipped. Ensure that an authorised representative of your organization is available to answer calls on your verified business telephone number. Inform your reception staff or whoever answers your main business line that they may receive a verification call from the Certificate Authority (CA) regarding an SSL Certificate order.

The callback typically occurs during business hours in your time zone. If you have specific availability requirements, you may be able to schedule the callback for a convenient time by contacting the validation team.

Alternative Validation Methods

If standard verification methods are unable to confirm your organization's details, alternative documentation may be accepted to complete the validation process.

Legal Opinion Letter

A Legal Opinion Letter is a document prepared and signed by a licensed attorney, Latin Notary, or Certified Public Accountant (CPA) that confirms your organization's legal status, physical address, and telephone number. The professional signing the letter must be licensed to practice in the jurisdiction where your organization is registered or where it maintains a physical presence.

A Legal Opinion Letter can be used when government databases are not accessible online, when your organization cannot be found in third-party directories, or when you need to expedite the validation process. The Certificate Authority (CA) will verify the credentials of the signing professional before accepting the letter.

Bank Confirmation Letter

In some cases, a letter from your financial institution confirming that your organization maintains a demand deposit account may be accepted to verify operational existence. This is particularly useful for newer organizations that may not yet have extensive business directory listings.

Common Issues and Solutions

Understanding common validation issues can help you avoid delays and ensure a smooth issuance process.

Organization Name Mismatch

The organization name on your SSL Certificate order must match your legal registration exactly. This includes corporate identifiers such as Ltd, LLC, Inc, or Pty Ltd. If your organization operates under a trading name or DBA (Doing Business As) that differs from your legal name, you may need to provide documentation showing the registered trading name.

Address Verification Failure

If your business address cannot be verified through government databases or business directories, you may need to provide supporting documentation such as a recent utility bill, bank statement, or official government correspondence showing your organization name and address.

Telephone Number Not Found

If your telephone number cannot be verified through public directories, ensure it is listed correctly with your telecommunications provider and in relevant business directories. Alternatively, a Legal Opinion Letter can be used to verify your telephone number.

Validation Timeline

Organization Validation (OV) SSL Certificates are typically issued within one to three business days, depending on how quickly all verification steps can be completed. Having accurate and up-to-date information readily available can help achieve faster issuance. The timeline may be extended if additional documentation is required or if there are difficulties reaching an authorised representative for the callback verification.

Trustico® provides order tracking through your customer account where you can monitor the status of your SSL Certificate order and see which validation steps have been completed. If any action is required from you, you will receive e-mail notifications with instructions. View Our SSL Certificate Order Tracking 🔗

Getting Help with Validation

If you experience any difficulties with the validation process or have questions about the requirements, Trustico® support is available to assist you. Our team can provide guidance on preparing your documentation and help resolve any validation issues that may arise.

Trustico® is committed to ensuring your Organization Validation (OV) SSL Certificate is issued as quickly as possible while maintaining the high security standards that protect both your organization and your website visitors. By preparing your information in advance and ensuring an authorised representative is available for the verification callback, you can help ensure a smooth and efficient validation experience. Explore Trustico® Support Options 🔗

Ask Trustico® Assistant

For Instant Answers - Start Here When You Have a Question or Need Help

SSL Certificate Works on WWW but Not Root Domain : Troubleshooting Guide

SSL Certificate Works on WWW but Not Root Domai...

Several server configuration problems can cause SSL Certificates to work on the www version but fail on the non-www version of a domain. Understanding these causes helps identify the specific...

SSL Certificate Works on WWW but Not Root Domai...

Several server configuration problems can cause SSL Certificates to work on the www version but fail on the non-www version of a domain. Understanding these causes helps identify the specific...

Understanding SSL Certificate File Formats and Extensions

Understanding SSL Certificate File Formats and ...

SSL Certificate files can be broadly categorized into three main types based on how the data is encoded and stored. Understanding these categories will help you identify which format you...

Understanding SSL Certificate File Formats and ...

SSL Certificate files can be broadly categorized into three main types based on how the data is encoded and stored. Understanding these categories will help you identify which format you...

Understanding the AutoCSR Service for SSL Certificate Orders

Understanding the AutoCSR Service for SSL Certi...

Learn how AutoCSR works, compare it to hosting company practices, find out when automated credential generation is appropriate versus generating your own CSR. Covers security considerations including the Trustico® non-retention...

Understanding the AutoCSR Service for SSL Certi...

Learn how AutoCSR works, compare it to hosting company practices, find out when automated credential generation is appropriate versus generating your own CSR. Covers security considerations including the Trustico® non-retention...

What Is Encrypted Server Name Indication (ESNI)? How Encrypted Client Hello (ECH) Protects Your Privacy

What Is Encrypted Server Name Indication (ESNI)...

The limitations of Encrypted Server Name Indication (ESNI) led to its evolution into Encrypted Client Hello (ECH) in 2020. Encrypted Client Hello (ECH) addresses the shortcomings of its predecessor while...

What Is Encrypted Server Name Indication (ESNI)...

The limitations of Encrypted Server Name Indication (ESNI) led to its evolution into Encrypted Client Hello (ECH) in 2020. Encrypted Client Hello (ECH) addresses the shortcomings of its predecessor while...

Transport Layer Security (TLS) and Cybersecurity

Transport Layer Security (TLS) and Cybersecurity

Every time a browser connects to a website using Hypertext Transfer Protocol Secure (HTTPS), Transport Layer Security (TLS) encrypts the connection to protect data from interception and tampering.

Transport Layer Security (TLS) and Cybersecurity

Every time a browser connects to a website using Hypertext Transfer Protocol Secure (HTTPS), Transport Layer Security (TLS) encrypts the connection to protect data from interception and tampering.

How to Find Your SSL Certificate Private Key

How to Find Your SSL Certificate Private Key

Private keys are generated simultaneously when you create a Certificate Signing Request (CSR) for your Trustico® SSL Certificate. This process creates a mathematically linked pair consisting of a public key...

How to Find Your SSL Certificate Private Key

Private keys are generated simultaneously when you create a Certificate Signing Request (CSR) for your Trustico® SSL Certificate. This process creates a mathematically linked pair consisting of a public key...

1 / 6