TLS Certificate template

Last updated: 4 Jul 2026

Official optional IT pack—structured fields for tls certificate secrets.

What this template is

The TLS Certificate template stores tLS / mTLS certificates with PEM storage and expiry metadata. Enable it under Settings → Category templates → Infrastructure & IT.

Category slugtls-certificate
PackOfficial optional — nt2-template-tls-certificate
TierFree

When to use it (and when not to)

Good fits

  • Wildcard or service certificates with renewal dates
  • Full PEM chain in multiline masked fields
  • Expiry reminders via structured expiry date (enable in Settings when available)

Use something else instead

SituationBetter template
API token for a SaaSAPI Service
VPN profileVPN
Unstructured PEM pasteSecure Note

Everyday workflows

  • Store certificate (PEM) and optional chain in dedicated multiline secret fields.
  • Set expiry date for local reminder hooks.
  • Keep private key in the same item only when you manage the full cert lifecycle.

Fields at a glance

FieldWhat to put hereSensitive?
TitleTitleNo
HostnameHostnameNo
IssuerIssuerNo
Expiry dateExpiry dateNo
Certificate (PEM)Certificate (PEM)Yes
Certificate chain (PEM)Certificate chain (PEM)Yes
Private keyPrivate keyYes
NotesNotesNo

What you need

TierFree
Vault stateUnlocked
NetworkOffline after the first successful app load
Feature toggleTLS Certificate pack enabled—see Enable category template packs

Steps

  1. Unlock your vault and open Settings → General → Category templates.
  2. Under Infrastructure & IT, toggle TLS Certificate On.
  3. Open Assets and Add assetTLS Certificate.
  4. Fill required fields and Save.

Tips and common mistakes

  • Enable pack first—TLS Certificate is not a core builtin.
  • Do not paste secrets into Secure Note—you lose masking, validation, and share hard-blocks.
  • Clipboard auto-clear applies to copied secrets—paste within 30 seconds.