# Unable to download intermediate certificate automatically Last updated: July 24, 2026 **Problem** You are getting the error **Intermediate certificates can't be downloaded automatically** while importing SSL certificates. ![Intermediate certificates can't be downloaded automatically error shown while importing an SSL certificate](https://cdn.manageengine.com/mobile-device-management/images/import-issue.png) Follow the steps below to solve this problem: 1. Open **.cer** or **.crt** file depending upon your certificate extension. 2. Go to the **Certification Path** -> click on the **Intermediate Certificate**. 3. You can see the certificates embedded in a tree structure. The parent certificate is the root certificate and the child is the intermediate certificate. For example, in the screenshot given below: **Root Certificate - Sectigo & Intermediate Certificate - Sectigo RSA Domain validation Secure Server CA.** ![Certification Path tab showing the root and intermediate certificate hierarchy](https://cdn.manageengine.com/mobile-device-management/images/icertificate1.png) 4. Double click on the **intermediate certificate** to open it. Once the intermediate certificate is open, go to the **Details** tab -> **Copy to file** to open the **Certificate Export Wizard**. ![Certificate Export Wizard opened from the Details tab to copy the intermediate certificate to a file](https://cdn.manageengine.com/mobile-device-management/images/icertificate2.png) 5. Click on **Next** and under **Select the format you want to use**, choose **base-64 encoded x.509** and save it as intermediate certificate.cer. ![Certificate Export Wizard with Base-64 encoded X.509 format selected for export](https://cdn.manageengine.com/mobile-device-management/images/icertificate3.png) 6. Follow steps 3 & 4 for root certificates as well and save as rootcertificate.cer. ![Certificate Export Wizard used to export the root certificate as rootcertificate.cer](https://cdn.manageengine.com/mobile-device-management/images/icertificate4.png) Now that you have the private key, root certificate and the intermediate certificate: - Login to **Mobile Device Manager Plus** console. - Navigate to **Admin** -> **Security Settings** -> **Import SSL Certificates** -> Click **Upload**. - Upload the root certificate and enter the server key. - Under **Intermediate Certificate**, choose **Manual** and upload the saved intermediate certificate. - Click **Save**. ![Import SSL Certificates page in Mobile Device Manager Plus showing root certificate and manual intermediate certificate upload](https://cdn.manageengine.com/mobile-device-management/images/icertificate5.png) Now you can automatically download the intermediate certficate. If the issue still persists, contact [support](mailto:mdm-support@manageengine.com).