The post cPanel provide support for lets encrypt automated certificate management ssl via Auto SSL option in WHM first appeared on Web Hosting Stuff.
]]>
If you are running cPanel & WHM version 58.0.17 or above (the EDGE or CURRENT tiers right now), you can now install the plugin using the command line by running this command:
/scripts/install_lets_encrypt_autossl_provider
Running that script will add cPanel’s repo file and make sure the plugin is up to date, which will add it as a provider to the AutoSSL feature introduced in 58. If you want to enable it after you add it to the server, you will need to do so from WHM.
The AutoSSL feature includes the following limitations and conditions:
provides can secure a maximum of 100 domains per virtual host.www. domains for each domain and subdomain in the certificate, and those www. domains count towards any domain or rate limits.
example.com, AutoSSL will automatically include www.example.com in the certificate.www. domain does not pass a DCV test, AutoSSL will not attempt to secure that www. domain.
For example, the following table demonstrates these limitations for the cPanel AutoSSL provider:
| 200 domains | AutoSSL will generate one certificate for the account which secures all 200 domains. | |
| 202 domains | AutoSSL will generate one certificate for the account which secures the 200 domains with the shortest names. | |
| 100 domains | 100 domains | AutoSSL will generate a certificate for each virtual host that secures all of its domains. |
| 100 domains | 102 domains | AutoSSL will generate a certificate for each virtual host that secures all of its domains. |
| 100 domains | 202 domains | AutoSSL will generate two certificates:
|
To select an AutoSSL provider, perform the following steps:
Note:
If the provider updates their Terms of Service, you may need to return to this interface to agree to them.
Users must use a package that includes the autossl feature to receive the free certificates. For more information about feature lists, read our Feature Manager documentation.
To override the feature settings and control whether AutoSSL is enabled for a user or users, perform the following steps:
Notes:
/etc/cron.d/cpanel_autossl cron daemon task to schedule the automatic provisioning of certificates, you may experience a delay between when you enable the feature and the installation of certificates. The interface displays the next time that the script will run.Click Run AutoSSL for all users at the top of the interface to run the AutoSSL feature for all users with the feature enabled.
To run the AutoSSL feature for a single user, click the user’s Check button in the Run AutoSSL Check column of the table.
To review AutoSSL log files, perform the following steps:
The system stores the log files in both text and JSON format in the /var/cpanel/logs/autossl directory.
We do not support the revocation of certificates through cPanel & WHM at this time.
Let’s Encrypt will only issue a certificate five times per week to a specific set of domains before it blocks any further certificates for that set of domains.
To work around this rate limitation, create an alias to a domain in the virtual host list (website) so that Let’s Encrypt interprets the virtual host as a new set of domains.
That version of cPanel & WHM does not support deferred Apache and Dovecot configuration restarts, which results in unacceptable downtime and a poor customer experience. As such, we will not make the plugin available for version 56.
The post cPanel provide support for lets encrypt automated certificate management ssl via Auto SSL option in WHM first appeared on Web Hosting Stuff.
]]>