Paste your private key, CSR, and SSL certificate to verify they all match. Mismatched keys and certificates are a leading cause of confusing "SSL handshake failed" errors during installation.
The most common reason is regenerating the CSR after submission — this creates a new key pair. The CA signs the original CSR, so the old certificate won't match the new key. Always keep the original key until the certificate is installed.
Yes. All three inputs are processed in your browser. Your private key never leaves your device.
Certificate installation will fail or produce an SSL error in browsers. You'll need to either find the correct matching key or reissue the certificate using a new CSR generated from the current key.
No. You can check any two of the three — for example, just the key and certificate — to verify a partial match.
Find the right SSL certificate for your site in 60 seconds.
Take the SSL wizard →