This site will have limited functionality while we undergo maintenance to improve your experience. If an article doesn't solve your issue and you want to ask a question, we have our support community waiting to help you at @FirefoxSupport on Twitter and/r/firefox on Reddit.

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Why isn't the "DIgiCert Global CA G2" intermediate cert loaded in the FF trusted store?

I have a website FF will not trust because the Digicert Global CA G2 intermediate isn't automatically loaded into the FF trusted store. Please add this intermediate cert ASAP.

I have a website FF will not trust because the Digicert Global CA G2 intermediate isn't automatically loaded into the FF trusted store. Please add this intermediate cert ASAP.

All Replies (3)

Hi, only root certificates of certificate authorities will ship in the Firefox trust store by default. Intermediate certs that chain up to a trusted certificate authority are getting cached by Firefox for future use though. If you have a website that isn't trusted by default, it's most likely that the server isn't properly serving the intermediate certificate chained up to the trusted root. Please refer to the support resources of your cert's seller on how to implement that.

You can check the server.

Hi johnljordan, if you installed the certificate yourself (literally uploaded the file to the server), check your issuer's instructions on whether you need to also upload a bundle file that contains all the necessary intermediate certificates to complete the chain of trust. Usually you do.

If you bought the certificate through CPanel or it was otherwise installed by your web host, point them to your SSLLabs test results and ask them to fix it.