Uplynk TLS CA Root Trust Requirements
Root CA certificates that devices and players must trust to connect to Uplynk services over TLS.
Uplynk services use industry-standard TLS (Transport Layer Security) to protect and encrypt communication in transit over the open internet.
To ensure compatibility with the public certificate authorities (CAs) that sign Uplynk TLS certificates, verify that your device, browser, app, or player trusts the root CAs listed below.
Root CA Certs
The Uplynk platform uses TLS certificates signed by the following root CAs:
- Amazon (https://www.amazontrust.com/repository#certification-authorities)
CN=Amazon Root CA 1,O=Amazon,C=USCN=Amazon Root CA 2,O=Amazon,C=USCN=Amazon Root CA 3,O=Amazon,C=USCN=Amazon Root CA 4,O=Amazon,C=USCN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies, Inc.,C=US,S=Arizona,L=Scottsdale
- Sectigo (https://www.sectigo.com/faqs/detail/Sectigo-Chain-Hierarchy-and-Intermediate-Roots)
CN=USERTrust RSA Certification Authority,O=The USERTRUST Network,C=USCN=COMODO RSA Certification Authority,O=COMODO CA Limited,C=GB
- Digicert (https://knowledge.digicert.com/general-information/digicert-trusted-root-authority-certificates#otherroots)
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2
- Certainly (https://www.certainly.com/repository/index.html)
C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Root Certificate Authority - G2(https://certs.starfieldtech.com/repository/sfroot-g2.crt.pem)- For full compatibility with Uplynk CDNs, include this root CA certificate.
Notes
Note 1: The public CAs listed above may publish additional root CAs, but the certificates required for Uplynk support are those listed on this page. This list is current as of January 2026. Uplynk may add new CAs over time as vendors or cloud providers update or introduce root CAs.
Note 2: Most modern operating systems, browsers, and major TLS client libraries already trust these root CAs, so no explicit action is typically required. We do not recommend using custom or curated CA certificate bundles because they can create long-term maintenance burdens. However, if your devices or apps require custom CA trust stores or bundles, you must explicitly include the root CAs listed above.
Updated about 1 month ago
