{"templateId":"markdown","versions":[{"version":"v1","label":"v1","link":"/products/events/certificate","default":true,"active":true,"folderId":"5ea8243d"}],"sharedDataIds":{"sidebar":"sidebar-products/events/sidebars.yaml","current-catalog-info":"current-catalog-info-/products/events/openapi"},"props":{"metadata":{"markdoc":{"tagList":["partial","admonition"]},"custom_product":"Events","type":"markdown"},"seo":{"title":"Certificate check","description":"Worldpay for Developers - docs, code examples, resources and tools. Everything you need to build your omnichannel payment solution.","siteUrl":"https://docs.worldpay.com/access","image":"/access/assets/worldpay-logo-light.21b7daf79984773a9fcd7d4fbcb07ae5289dfffd6023c4c3dca720c7058e53dc.33f780a6.svg","keywords":"documentation, api, openapi, sdks, developer, payments, json, payouts, 3ds","jsonLd":{"@context":"https://schema.org","@type":"Organization","url":"https://docs.worldpay.com/access","name":"Worldpay"},"meta":[{"name":"google-site-verification","content":"zjziIKaP3ImsqsfhYnEBnq1R85UabiSwl7HTXuwtZuo"},{"name":"doc_product","content":"Access"},{"name":"doc_category","content":"Documentation"}],"llmstxt":{"hide":false,"sections":[{"title":"Payments API","description":"Payment orchestration API combining fraud assessment, 3ds authentication, SCA exemptions, Worldpay Token creation and a card or wallet based payment.","includeFiles":["products/payments/@20240601/**/*"],"excludeFiles":[]},{"title":"Payment Queries API","description":"Querying your payments data, based on a variety of parameters.","includeFiles":["products/payment-queries/@v1/**/*"],"excludeFiles":[]},{"title":"Card BIN Data API","description":"Provides detailed information about a card.","includeFiles":["products/card-bin/@v1/**/*"],"excludeFiles":[]},{"title":"3DS Authentication API","description":"Request 3DS authentication to protect against fraud, be SCA compliant and to shift liability using this standalone API.","includeFiles":["products/3ds/@v3/**/*"],"excludeFiles":[]},{"title":"FraudSight API","description":"Request a risk assessment and receive a response with an outcome (e.g. lowRisk) using this standalone API.","includeFiles":["products/fraudsight/@v1/**/*"],"excludeFiles":[]},{"title":"Checkout SDK","description":"Integrate using our clientside SDKs for both web and native devices. Benefit from SAQ-A/PCI-SSF compliance.","includeFiles":["products/checkout/web/@v2/**/*","products/checkout/ios/@v4/**/*","products/checkout/android/@v4/**/*","products/checkout/react-native/@v3/**/*","products/checkout/flutter/@v1/**/*"],"excludeFiles":[]},{"title":"Tokens API","description":"Minimizes the exposure of sensitive card details and increases the security of your customer's card details.","includeFiles":["products/tokens/@v3/**/*"],"excludeFiles":[]},{"title":"Card Payments API","description":"Request a card payment using this standalone API, requires separate requests for 3DS, Fraud assessment etc.","includeFiles":["products/card-payments/@v7/**/*"],"excludeFiles":[]},{"title":"Card Verifications API","description":"Verify your customer's card to maximize your authentication rates.","includeFiles":["products/card-verifications/@v6/**/*"],"excludeFiles":[]},{"title":"Account Payouts API","description":"Send funds to your customer's bank accounts and search for payouts using parameters.","includeFiles":["products/account-payouts/@20250101/**/*"],"excludeFiles":[]},{"title":"APMs","description":"Pay using eWallets, bank transfers, direct debits, local card schemes, Postpay and eInvoice/ Buy Now Pay Later.","includeFiles":["products/apms/@20240701/**/*"],"excludeFiles":[]},{"title":"Balance API","description":"Request your account details for a single account or all accounts under an entity.","includeFiles":["products/balance/@20250101/**/*"],"excludeFiles":[]},{"title":"Card Payouts API","description":"Send funds to your customer's cards.","includeFiles":["products/card-payouts/@v4/**/*"],"excludeFiles":[]},{"title":"Events (Webhooks)","description":"Receive status updates from Access Worldpay by setting up a webhook.","includeFiles":["products/events/@v1/**/*"],"excludeFiles":[]},{"title":"FX API","description":"Manage Foreign Exchange (FX) on your payments.","includeFiles":["products/fx/@v1/**/*"],"excludeFiles":[]},{"title":"Hosted Payment Pages (HPP) API","description":"Our low-code option to take payments securely at the lowest PCI compliance level - SAQ A.","includeFiles":["products/hosted-payment-pages/@v1/**/*"],"excludeFiles":[]},{"title":"Money Transfers API","description":"Money Transfer OCTs (Original Credit Transaction) allow funds to be pushed to an eligible card in 30 minutes or less.","includeFiles":["products/money-transfers/@v1/**/*"],"excludeFiles":[]},{"title":"Parties API","description":"Create parties, manage your payout instruments and beneficial owners and carry out identity verification checks.","includeFiles":["products/parties/@20250101/**/*"],"excludeFiles":[]},{"title":"SCA Exemptions API","description":"Maximize a frictionless checkout experience by using issuer data insights to apply exemptions.","includeFiles":["products/sca-exemptions/@v1/**/*"],"excludeFiles":[]},{"title":"Split Payments API","description":"Divide funds from a single payment amongst yourself and your parties/sellers.","includeFiles":["products/split-payments/@20250625/**/*"],"excludeFiles":[]},{"title":"Statements API","description":"Retrieve your account statement and see individual entries for all credits and debits.","includeFiles":["products/statements/@20250101/**/*"],"excludeFiles":[]},{"title":"Transfers API","description":"Transfer funds from source account to target account.","includeFiles":["products/transfers/@20250101/**/*"],"excludeFiles":[]},{"title":"Verified Tokens API","description":"Verified Tokens ensures that your customer's payment details are valid and CIT compliant when creating a token.","includeFiles":["products/verified-tokens/@v3/**/*"],"excludeFiles":[]}],"excludeFiles":[]}},"dynamicMarkdocComponents":[],"compilationErrors":[],"ast":{"$$mdtype":"Tag","name":"article","attributes":{},"children":[{"$$mdtype":"Tag","name":"p","attributes":{},"children":[{"$$mdtype":"Tag","name":"strong","attributes":{},"children":["Last updated"]},": 08 July 2026 | ",{"$$mdtype":"Tag","name":"MarkdownLink","attributes":{"href":"/products/events/changelog/"},"children":[{"$$mdtype":"Tag","name":"strong","attributes":{},"children":["Change log"]}]}]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":1,"id":"certificate-check","__idx":0},"children":["Certificate check"]},{"$$mdtype":"Tag","name":"ol","attributes":{},"children":[{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Use your reverse proxy to verify the client certificate that the Access Worldpay Events service sends to your webhook, against the Worldpay Client Certificate chain provided below."]}]},{"$$mdtype":"Tag","name":"details","attributes":{},"children":[{"$$mdtype":"Tag","name":"summary","attributes":{},"children":["Worldpay's root certificate"]},{"$$mdtype":"Tag","name":"CodeBlock","attributes":{"header":{"controls":{"copy":{}}},"source":"-----BEGIN CERTIFICATE-----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\nCT1Uch7O/LBPj4YtBJeSP5z+veRCoJPSoQ==\n-----END CERTIFICATE-----\n-----BEGIN CERTIFICATE-----\nMIIF5jCCA86gAwIBAgIQEO3GAZsz35tMRB2EUEqxGzANBgkqhkiG9w0BAQsFADCB\ngzELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0Zsb3JpZGExFTATBgNVBAcTDEphY2tz\nb252aWxsZTEvMC0GA1UEChMmRmlkZWxpdHkgTmF0aW9uYWwgSW5mb3JtYXRpb24g\nU2VydmljZXMxGjAYBgNVBAMTEUZJU0dMT0JBTCBST09UIENBMB4XDTIyMDQwNTIw\nMjAyN1oXDTQ3MDQwNTIwMjAyN1owgYMxCzAJBgNVBAYTAlVTMRAwDgYDVQQIEwdG\nbG9yaWRhMRUwEwYDVQQHEwxKYWNrc29udmlsbGUxLzAtBgNVBAoTJkZpZGVsaXR5\nIE5hdGlvbmFsIEluZm9ybWF0aW9uIFNlcnZpY2VzMRowGAYDVQQDExFGSVNHTE9C\nQUwgUk9PVCBDQTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAJpONdY5\nK2ZbHy0P1wGQ3oLgJ3IVRJ99FX+OTkJpXKRleVuBCgCLZrDV9JsbdGO+P1kHvsWi\n/GcOUGiizszmJTMznB/PjbjwoauHqZKEikpTJ3W7JEjsHI6gBI1hew1uFRXTBIiF\nZiRA/ZsRN03aQFLg0nyUfHw9pkTLDEN0a4HoB1ZEjApFXYW6xYKOjlZ79aaXQhJU\n+kIF7vQ0I+Za9eo73cHYDBxF2QGn2S4KM2/JaFGwN0HOS3YD3FXelN7yVkFEW4zj\nROMqh5qsLnHyCT74yermvOr9PqPGSni4jcp++NVMlIEIqkAMhG9c/fcQj6Mglsi3\nFSWUBb3EapSHzgTKwIbzicktiIS9wkkSwCn0qx5E2Ec4fFvOu0fRnebfHLr12tme\nDH7cdRF48ImQp+Kp2GDAc+/wLQjkfpv/m/qdKH5TT9EbuxyekEIGIvmruo0o4FWh\nI3GCwynup9LUnBoPO3L03LDLyN3AFLurj4lbf2JzW3HexBc9f6yoh8R2DvhdefGh\n+DdJWzdjngKivRF0nQ2HcgOCJszsAlCE4/6IIxyLJeMmfROqu/0DoWsMHmheBO9B\nmmWV5h7rgLxT8Wd7pMidxjjAfWyZdURwT1b3Wk7cGxDdHrXvTuKtc4pla8hslsuZ\ncXFmfsdV7utI5E/186VIP6n1lH8y7ZSunSZ7AgMBAAGjVDBSMA4GA1UdDwEB/wQE\nAwIBBjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBR8llGfBkWdPmQToF/tIA5Q\nX9l5TTAQBgkrBgEEAYI3FQEEAwIBADANBgkqhkiG9w0BAQsFAAOCAgEAMrbKkWk7\nddFWmhTS32hhyODLZqPZBaycSygkmmqbaSEec8i9DnHKVdk9uDVCc5j/kUpVjfQ6\nn6Kcccq9dTmIE6yPtU8NcRFJDqISEKyvsX6P+H/1yb2Sg/U/w3joI8SXxQqgkzno\nN12yS0IAHpuokcUTctn/GOLaaUPnHIfdjcTH4lx15qukuMYZy6oA0UeRZPrSGJhH\nFEBVgpiiItX3FAU092ot/wTCq6d19TczUi37jB1NKRcxrvzB9RWTseCRRIAil6xM\nme2frUfFUxGusPfmBDlep7IUEMmw2mDCPZtlSG7eFra9R4+nXAkqAweVDguk71ja\nhxTE25Q74KdZf79M5frOWQxkT0Xtpjp3dxHAJcT9tAlP6HDOOZp2TVmeV7A7cdqI\nR6FrMivw5EA8QwSTD9sc9bmQnLo3+nLjlAdTAcZ6jBgsoMIpPx52YQ8gUYneYm7u\nFlOQ6GGKlROpAngwsPzSgaMfdv10iRiOsw0y2WjHbLflTRRe8zaNFrMhpgo4I6XN\nn7Iz4pvwRTbAmmGlH+a5KuyW6oGShPX29xMWRzvsJIiLqi8Tt5kBCZGxzks+4Qgg\nppUobXkoGmHa2syJb7cT3PxaahAxVK4y+TeKwvKx2z5XDnIUdYoJRmjM6fWItJOE\nP6NUbwZYB/G4mgmRMOVB0vvTQ8ycufOwsRw=\n-----END CERTIFICATE----- \n"},"children":[]}]},{"$$mdtype":"Tag","name":"ol","attributes":{"start":2},"children":[{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Configure your webhook URL to request a client certificate during the TLS handshake."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Validate the certificate we sent against the root you have installed."]}]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":2,"id":"validation--renewal","__idx":1},"children":["Validation & renewal"]},{"$$mdtype":"Tag","name":"p","attributes":{},"children":["Our client certificate is renewed regularly and is in line with best practice. You should never configure your server to expect an individually specific certificate. We recommend that you use the following aspects to validate the certificate:"]},{"$$mdtype":"Tag","name":"ul","attributes":{},"children":[{"$$mdtype":"Tag","name":"li","attributes":{},"children":["The Subject Common Name of the client certificate - this always contains ",{"$$mdtype":"Tag","name":"code","attributes":{},"children":["Payment Status Event Sender"]},"."]}]},{"$$mdtype":"Tag","name":"Admonition","attributes":{"type":"info","name":"Info"},"children":[{"$$mdtype":"Tag","name":"p","attributes":{},"children":["For the ",{"$$mdtype":"Tag","name":"code","attributes":{},"children":["Try"]}," environment it returns ",{"$$mdtype":"Tag","name":"code","attributes":{},"children":["Payment Status Event Sender (secure-test)"]},"."]}]},{"$$mdtype":"Tag","name":"ul","attributes":{},"children":[{"$$mdtype":"Tag","name":"li","attributes":{},"children":["The root of the signing chain - this has the Common Name ",{"$$mdtype":"Tag","name":"code","attributes":{},"children":["UKDC1-PC-PKI02"]},". The root may occasionally change, and you are notified of any changes."]}]},{"$$mdtype":"Tag","name":"details","attributes":{},"children":[{"$$mdtype":"Tag","name":"summary","attributes":{},"children":["Example Nginx configuration"]},{"$$mdtype":"Tag","name":"CodeBlock","attributes":{"header":{"controls":{"copy":{}}},"source":"server {\n    listen 8443 ssl;\n\n    # Make sure the certificate is signed by a trusted CA\n    ssl_certificate     trusted_ca_signed_certificate.crt;\n    ssl_certificate_key private.key;\n\n    # Mutual TLS / Specify the allowed CAs for the client cert\n    # This is where you put Worldpay's root certificate from the documentation\n    ssl_client_certificate client_cert_cas.pem;\n    ssl_verify_client on;\n    ssl_verify_depth 3;\n\n    # Mutual TLS / Client Cert Auth - client cert has known subject\n    if ($ssl_client_s_dn !~ \"Payment Status Event Sender\") {\n      return 403;\n    }\n\n    # Mutual TLS / Client Cert Auth - client cert issuer has known subject\n    if ($ssl_client_i_dn !~ \"UKDC1-PC-PKI02\") {\n      return 403;\n    }\n\n    location / {\n        proxy_pass http://localhost:8080;\n    }\n}\n"},"children":[]}]}]},"headings":[{"value":"Certificate check","id":"certificate-check","depth":1},{"value":"Validation & renewal","id":"validation--renewal","depth":2}],"frontmatter":{"seo":{"title":"Certificate check"}},"lastModified":"2025-09-22T09:15:26.000Z","pagePropGetterError":{"message":"","name":""}},"slug":"/products/events/certificate","userData":{"isAuthenticated":false,"teams":["anonymous"]},"isPublic":true}