Made & hosted in Germany · GDPR-compliant
PartnerDocumentationCareers
CONBOOL
  • Blog
  • About
Sign In
Dokumentation
  • Getting Started
  • Configuration
  • SecureMail
    • Inbound Rules
    • Outbound Rules
    • Routing Priority
    • Cryptography
      • S/MIME
        • Managed PKI
        • Auto Import
        • Auto Certificate Issuance
        • Certificate Export
        • Certificate Import
        • Issue Certificates
        • Own Certificate Authorities
        • SwissSign S/MIME
      • PGP
        • Key Creation
        • Key Export
        • Key Import
      • Message Portal
        • Configuration
        • Delivery Process
        • Replies and Interactions
        • Portal Configuration
      • PDF Encryption
  • MailGuard
  • Disclaimer
  • Tools & Support
  • Integrations
  • Tenant Administration
  • Roles & Permissions
CONBOOL

Secure and automated email security for businesses - simple, centralized and reliable.

© Copyright 2026 Conbool. All rights reserved.Member ofBSI Allianz für Cyber-Sicherheit – MitgliedBitkom Mitglied – Digitalverband

Awards
  • OMR Leader Badge für E-Mail-Sicherheit
About us
  • About
  • Blog
  • FAQ
  • Partners
  • Contact
Product
  • SecureMail
  • MailGuard
  • Disclaimer
  • DMARC
  • Archive
  • Documentation
Add-ins
  • Disclaimer
  • SecureMail
  • SecureFiles
Legal
  • Terms of Service
  • Privacy Policy
  • Legal Notice

Own Certificate Authorities

Create own certificate authorities for internal S/MIME certificates.

Conbool allows you to create and manage your own certificate authorities (CAs) to issue self-signed certificates internally.
This is particularly useful for test environments, isolated systems, or organizations that want to build an internal chain of trust.

Create Your Own CA

  1. Open S/MIME → Certificate Authority icon in the menu.
  2. Select "Own MPKI".
  3. Press "+".
  4. Fill in general information and cryptographic settings.
  5. Confirm the creation.
    The new CA then appears in the overview and can be used for certificate issuance.

Issue Certificates with Your Own CA

  1. Select the certificate authority icon again in the S/MIME section.
  2. Select the previously created own CA.
  3. Click "Open".
  4. Click "+".
  5. Enter email address, name, password, and validity period.
  6. The certificate is issued immediately and is available in the system.

Usage and Limitations

  • Self-signed certificates are not automatically recognized as trusted by external recipients.
  • For internal communication within the same tenant or with trusted partners, they can be used without any issues.
  • Own CAs can be exported if needed (root certificate in .cer format) to install them in clients or gateways.

Recommended:
Use internal CAs only for tests, internal communication, or isolated systems.
For productive, external communication, official certificates via SwissSign or D-Trust should be used.

Auf dieser Seite

  1. Create Your Own CA
    1. Issue Certificates with Your Own CA
    2. Usage and Limitations