<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>http://serverkb.co.uk/index.php?action=history&amp;feed=atom&amp;title=SSL</id>
	<title>SSL - Revision history</title>
	<link rel="self" type="application/atom+xml" href="http://serverkb.co.uk/index.php?action=history&amp;feed=atom&amp;title=SSL"/>
	<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;action=history"/>
	<updated>2026-04-28T14:48:59Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.42.4</generator>
	<entry>
		<id>http://serverkb.co.uk/index.php?title=SSL&amp;diff=338&amp;oldid=prev</id>
		<title>Rootadminacc: /* SSL Format */</title>
		<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;diff=338&amp;oldid=prev"/>
		<updated>2013-02-25T10:49:25Z</updated>

		<summary type="html">&lt;p&gt;&lt;span dir=&quot;auto&quot;&gt;&lt;span class=&quot;autocomment&quot;&gt;SSL Format&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 11:49, 25 February 2013&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l214&quot;&gt;Line 214:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 214:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [[SSL Format]] ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [[SSL Format]] ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;If you receive part/s of an SSL and it is incorrectly formatted, you can fix this by putting the text into this tool:&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;https://www.sslshopper.com/certificate-key-matcher.html&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== SSL on Plesk login ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== SSL on Plesk login ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key SKBmw:diff:1.41:old-249:rev-338:php=table --&gt;
&lt;/table&gt;</summary>
		<author><name>Rootadminacc</name></author>
	</entry>
	<entry>
		<id>http://serverkb.co.uk/index.php?title=SSL&amp;diff=249&amp;oldid=prev</id>
		<title>Rootadminacc at 22:12, 5 February 2013</title>
		<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;diff=249&amp;oldid=prev"/>
		<updated>2013-02-05T22:12:21Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 23:12, 5 February 2013&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot;&gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;You cannot have two or more SSL&#039;s on one IP address, as name based virtual hosting doesn&#039;t work for SSL . This is because the Host header is part of the encrypted payload so Apache/IIS doesn&#039;t know which certificate to present. Therefore you need a second IP for a second SSL certificate unless you use &#039;&#039;&#039;[[Server_Name_Indication | SNI (Server Name Indication)]]&#039;&#039;&#039;&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;You cannot have two or more SSL&#039;s on one IP address, as name based virtual hosting doesn&#039;t work for SSL . This is because the Host header is part of the encrypted payload so Apache/IIS doesn&#039;t know which certificate to present. Therefore you need a second &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;dedicated &lt;/ins&gt;IP &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;address &lt;/ins&gt;for a second SSL certificate unless you use &#039;&#039;&#039;[[Server_Name_Indication | SNI (Server Name Indication)]]&#039;&#039;&#039;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key SKBmw:diff:1.41:old-248:rev-249:php=table --&gt;
&lt;/table&gt;</summary>
		<author><name>Rootadminacc</name></author>
	</entry>
	<entry>
		<id>http://serverkb.co.uk/index.php?title=SSL&amp;diff=248&amp;oldid=prev</id>
		<title>Rootadminacc at 22:08, 5 February 2013</title>
		<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;diff=248&amp;oldid=prev"/>
		<updated>2013-02-05T22:08:46Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 23:08, 5 February 2013&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot;&gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;As &lt;/del&gt;name based virtual hosting doesn&#039;t work for SSL &lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;as &lt;/del&gt;the Host header is part of the encrypted payload&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;, &lt;/del&gt;Apache doesn&#039;t know which certificate to present.&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;You cannot have two or more SSL&#039;s on one IP address, as &lt;/ins&gt;name based virtual hosting doesn&#039;t work for SSL &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;. This is because &lt;/ins&gt;the Host header is part of the encrypted payload &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;so &lt;/ins&gt;Apache&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;/IIS &lt;/ins&gt;doesn&#039;t know which certificate to present. &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Therefore you &lt;/ins&gt;need a second IP for a second SSL certificate unless you use &lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&#039;&#039;&#039;&lt;/ins&gt;[[Server_Name_Indication | SNI (Server Name Indication)]]&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&#039;&#039;&#039;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt; &lt;/div&gt;&lt;/td&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-added&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;You &lt;/del&gt;need a second IP for a second SSL certificate unless you use [[Server_Name_Indication | SNI (Server Name Indication)]]&lt;/div&gt;&lt;/td&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-added&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key SKBmw:diff:1.41:old-247:rev-248:php=table --&gt;
&lt;/table&gt;</summary>
		<author><name>Rootadminacc</name></author>
	</entry>
	<entry>
		<id>http://serverkb.co.uk/index.php?title=SSL&amp;diff=247&amp;oldid=prev</id>
		<title>Rootadminacc at 22:07, 5 February 2013</title>
		<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;diff=247&amp;oldid=prev"/>
		<updated>2013-02-05T22:07:49Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 23:07, 5 February 2013&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot;&gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;As name based virtual hosting doesn&#039;t work for SSL as the Host header is part of the encrypted payload, Apache doesn&#039;t know which certificate to present.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;You need a second IP for a second SSL certificate unless you use [[Server_Name_Indication | SNI (Server Name Indication)]]&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key SKBmw:diff:1.41:old-38:rev-247:php=table --&gt;
&lt;/table&gt;</summary>
		<author><name>Rootadminacc</name></author>
	</entry>
	<entry>
		<id>http://serverkb.co.uk/index.php?title=SSL&amp;diff=38&amp;oldid=prev</id>
		<title>Rootadminacc: Created page with &quot;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==  If you have an SSL in p12 format, ....&quot;</title>
		<link rel="alternate" type="text/html" href="http://serverkb.co.uk/index.php?title=SSL&amp;diff=38&amp;oldid=prev"/>
		<updated>2013-01-15T11:37:29Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==  If you have an SSL in p12 format, ....&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;== [http://www.sslshopper.com/how-to-move-or-copy-an-ssl-certificate-from-one-server-to-another.html Copying SSL from server to server] ==&lt;br /&gt;
&lt;br /&gt;
If you have an SSL in p12 format, .pfx format or PKCS#12, you may want to go [http://nl.globalsign.com/en/support/ssl+certificates/openssl/openssl+commands/ here] to find the OpenSSL command to convert it to PEM.&lt;br /&gt;
&lt;br /&gt;
== Generate CSR in Plesk ==&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Plesk 9&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
* Main Menu - Domains&lt;br /&gt;
* Click the Domain&lt;br /&gt;
* Additional Tools - SSL Certificates&lt;br /&gt;
* Add SSL Certificate&lt;br /&gt;
* Enter the certificate name&lt;br /&gt;
* Fill in the preferences and set the Bits to 2048&lt;br /&gt;
* Click Request&lt;br /&gt;
* Go back to the SSL certificates menu &amp;gt; click the SSL&lt;br /&gt;
* Send the CSR and Private Key to the SSL provider.&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Plesk 10&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
* Hosting Services - Domains&lt;br /&gt;
* Open in Control Panel for the domain&lt;br /&gt;
* Websites and Domains&lt;br /&gt;
* Secure Your Sites&lt;br /&gt;
* Same steps as Plesk 9 from &amp;quot;Add SSL Certificate&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Ensure you check/do the following == &lt;br /&gt;
&lt;br /&gt;
* Create the following email address to receive the confirmation email as SSL providers have specific requirements: admin@yourdomain (domain name of the SSL)&lt;br /&gt;
&lt;br /&gt;
* Purchase the SSL with www where possible.&lt;br /&gt;
&lt;br /&gt;
* Understand [http://www.webfusion.co.uk/support/answers/what-is-an-ssl-certificate-do-i-need-one-479 what an SSL is] and if you need one.&lt;br /&gt;
&lt;br /&gt;
== Oops, no RSA or DSA server certificate found for... ==&lt;br /&gt;
&lt;br /&gt;
Apache SSL error:&lt;br /&gt;
&lt;br /&gt;
Oops, no RSA or DSA server certificate found for “‘www.somedomain.com:0′?!”&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/apache2/sites-available/&lt;br /&gt;
vim domain.co.ukssl&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Add in the following:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;#   SSL Engine Switch:&lt;br /&gt;
#   Enable/Disable SSL for this virtual host.&lt;br /&gt;
SSL Engine On&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== [http://www.google.co.uk/search?hl=en&amp;amp;source=hp&amp;amp;biw=1440&amp;amp;bih=809&amp;amp;q=transferring+ssl+certificate+to+new+server&amp;amp;oq=transfering+SSL&amp;amp;aq=1sv&amp;amp;aqi=g-sv3&amp;amp;aql=&amp;amp;gs_sm=e&amp;amp;gs_upl=57l2078l0l4052l15l13l0l1l1l0l211l1574l2.9.1l12l0/ Google Search of Transferring SSL certificate to new server] ==&lt;br /&gt;
&lt;br /&gt;
== Install an SSL certificate into Plesk ==&lt;br /&gt;
&lt;br /&gt;
* 1) Ensure you know if it is a Domain, Organizational or Extended SSL before installing.&lt;br /&gt;
* 2) Login to the Plesk Control Panel.&lt;br /&gt;
* 3) Go to Server Management - Tools &amp;amp; Utilities &amp;gt; SSL Certificates &amp;gt; Add SSL Certificate&lt;br /&gt;
* 4) Enter a name for your SSL. This can be anything.&lt;br /&gt;
* 5) Select 2048 from the Bits drop down menu.&lt;br /&gt;
&lt;br /&gt;
* 6) Enter the domain name that your bought the SSL with. To check if you bought it with or without www copy the Certificate and put it into [http://www.sslshopper.com/certificate-decoder.html this].&lt;br /&gt;
&lt;br /&gt;
* 7) Add in the Private Key, Certificate and just the DomainSSL CA Bundle from [http://www.globalsign.com/support/intermediate/domain_bundle2011.php here] or the OrganizationSSL Root Bundle [http://www.globalsign.com/support/intermediate/organization_bundle2011.php here] &amp;#039;&amp;#039;&amp;#039;ONLY if it is Global Sign&amp;#039;&amp;#039;&amp;#039;.&lt;br /&gt;
&lt;br /&gt;
* 8) Go to Server Management - Tools &amp;amp; Utilities &amp;gt; Resources - IP Addresses &amp;gt; Click the IP.&lt;br /&gt;
* 9) Set it to Dedicated.&lt;br /&gt;
* 10) Select the SSL Certificate from the dropdown menu&lt;br /&gt;
* 11) Set the Default Site to your website.&lt;br /&gt;
* 12) Then go to Hosting Services - Domains &amp;gt; click Control Panel.&lt;br /&gt;
* 13) Go to the Websites and Domains tab &amp;gt; click the domain itself.&lt;br /&gt;
* 14) Under Security select Enable SSL Support.&lt;br /&gt;
* 15) Check the SSL [http://www.sslshopper.com/ssl-checker.html here]. Using this tool as well you can ensure you have a Domain, Organizational or Extended SSL under the Issuer heading. Ensure you have the correct root/CA bundle.&lt;br /&gt;
&lt;br /&gt;
Note: Wildcard SSL&amp;#039;s use a Domain SSL CA.&lt;br /&gt;
&lt;br /&gt;
=== Alternate guide ===&lt;br /&gt;
&lt;br /&gt;
* 1) Login to the Plesk Control Panel.&lt;br /&gt;
* 2) Select Domains from the left hand menu.&lt;br /&gt;
* 3) Click on the domain name that the certificate is for - &amp;quot;yourdomain.com&amp;quot;.&lt;br /&gt;
* 4) Click on the Certificates menu item.&lt;br /&gt;
* 5) There is a button in the middle of the page labelled Browse. Click Browse and navigate to the location of the certificate (save certificate into .txt) you received.&lt;br /&gt;
* 6) Select it, then select Send File, this will upload and attach the certificate to the corresponding private key.&lt;br /&gt;
* 7) The certificate name will now appear in the list of certificates at the bottom of the page. Click on the name of the certificate in the list.&lt;br /&gt;
* 8) Download the appropriate CA/CA Bundle and paste contents in the CA Certificate box.&lt;br /&gt;
* 9) Click the Send Text button.&lt;br /&gt;
* 10) Now click Up Level from the top right of the screen and choose Setup.&lt;br /&gt;
* 11) At the top of the page, select the SSL Certificate you&amp;#039;ve installed from the SSL Certificate drop-down menu.&lt;br /&gt;
* 12) Click the Server item from the left hand menu.&lt;br /&gt;
* 13) Click on the Service Management menu item.&lt;br /&gt;
* 14) You now need to Stop and Start the Apache process.&lt;br /&gt;
&lt;br /&gt;
[http://www.digicert.com/ssl-certificate-installation-plesk.htm/ Alternate guide from Digicert]&lt;br /&gt;
&lt;br /&gt;
=== Bundle Intermediate Root CA&amp;#039;s ===&lt;br /&gt;
&lt;br /&gt;
[http://www.alphassl.com/support/install-root-certificate.html AlphaSSL root intermediate CA]&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.sslshopper.com/ssl-checker.html#hostname=b2b-ics.netprintmanager.com Comodo root intermediate CA]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;These are Global Signs&amp;#039;&amp;#039;&amp;#039;:&lt;br /&gt;
&lt;br /&gt;
[http://www.globalsign.com/support/intermediate/domain_bundle2011.php DomainSSL Root Bundle]&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.globalsign.com/support/intermediate/domainssl_intermediate2011.php DomainSSL Root CA]&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.globalsign.com/support/intermediate/organization_bundle2011.php OrganizationSSL Root Bundle]&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.globalsign.com/support/intermediate/extended_bundle.php ExtendedSSL Root Bundle]&lt;br /&gt;
&lt;br /&gt;
[https://www.globalsign.com/support/intermediate/organization_bundle.php OLD pre-June 2011 OrganizationSSL Root Bundle]&lt;br /&gt;
&lt;br /&gt;
=== Install through command line ===&lt;br /&gt;
&lt;br /&gt;
This can be used after the SSL has been placed in Plesk within either the Domain or Server SSL section.&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Linux:&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cd /opt/psa/bin&lt;br /&gt;
certificate --assign-cert &amp;quot;CertificateName&amp;quot; -domain yourdomain.com -ip ServerIPAddress&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Or:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cd /usr/local/psa/admin/plib/api-cli&lt;br /&gt;
certificate.php --assign-cert &amp;quot;CertificateName&amp;quot; -domain yourdomain.com -ip ServerIPAddress&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Windows:&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
CLI guide: http://download1.parallels.com/Plesk/PPP9/Doc/en-US/plesk-9.5-win-cli.pdf&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cd %plesk_cli%&lt;br /&gt;
certificate.exe --assign-cert &amp;quot;CertificateName&amp;quot; -domain yourdomain.com -ip ServerIPAddress&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== Plesk + CentOS SSL bug ===&lt;br /&gt;
&lt;br /&gt;
httpd can pick up a Private Key in /etc/httpd/conf.d/ssl.conf potentially from either:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/pki/tls/certs/localhost.crt&amp;lt;/pre&amp;gt;&lt;br /&gt;
or&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/pki/tls/private/localhost.key&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
or another bit below line 68. You can sometimes comment out everything from line 68 and then check if it works on http://sslshopper.com/ssl-checker.html&lt;br /&gt;
&lt;br /&gt;
You can see the original file in the server here: vim etc/httpd/conf.d/ssl.conf&lt;br /&gt;
&lt;br /&gt;
== [[CPanel#Installing_an_SSL | Install SSL in WHM/cPanel]] ==&lt;br /&gt;
&lt;br /&gt;
== I understand the risks on domain SSL ==&lt;br /&gt;
&lt;br /&gt;
If a domain is asking &amp;quot;I Understand the Risks&amp;quot; with an SSL, check the Technical Details and what domains it is registered under. Use [http://www.sslshopper.com/ssl-checker.html SSL Checker]&lt;br /&gt;
&lt;br /&gt;
If the domain shows as having issues with common name, it is likely the SSL was ordered with the www prefix but installed without or vice versa.&lt;br /&gt;
&lt;br /&gt;
== [http://sycure.wordpress.com/2008/05/15/tips-using-openssl-to-extract-private-key-pem-file-from-pfx-personal-information-exchange PEM extraction] ==&lt;br /&gt;
&lt;br /&gt;
== [http://www.google.co.uk/webhp?sourceid=chrome-instant&amp;amp;ion=1&amp;amp;ie=UTF-8#hl=en&amp;amp;tbo=d&amp;amp;sclient=psy-ab&amp;amp;q=pfx+ssl&amp;amp;oq=pfx+ssl&amp;amp;gs_l=hp.3..0l4.1420.1780.2.1992.4.4.0.0.0.0.310.711.0j1j1j1.3.0.les%3B..0.0...1c.1.3zC7xB62vgU&amp;amp;pbx=1&amp;amp;bav=on.2,or.r_gc.r_pw.r_qf.&amp;amp;bvm=bv.1357316858,d.d2k&amp;amp;fp=84fcd28c6a769976&amp;amp;ion=1&amp;amp;biw=1360&amp;amp;bih=683 PKCS/PFK/PFX] ==&lt;br /&gt;
&lt;br /&gt;
== Plesk SSL errors ==&lt;br /&gt;
&lt;br /&gt;
Unable to set the certificate: Unable to put certificate file: Unable to arrange cert file: cp2tempnam failed: filemng failed: filemng: Unable to open file &amp;quot;/var/lock/files/&amp;quot;: No such file or directory.&lt;br /&gt;
&lt;br /&gt;
Create the /var/lock/files directory manually and remove entries from the psa database, certificates table.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;ERROR: PleskFatalException Up Level&lt;br /&gt;
&lt;br /&gt;
SSLCertificate::check_signs() failed: openssl_x509_checkpurpose() failed:&lt;br /&gt;
&lt;br /&gt;
--------------------------------------------------------------------------------&lt;br /&gt;
&lt;br /&gt;
0: CertificatePropertiesUIPointer.php:454&lt;br /&gt;
CertificatePropertiesUIPointer-&amp;gt;accessItemEdit(string &amp;#039;POST&amp;#039;, NULL null)&lt;br /&gt;
1: CertificatePropertiesUIPointer.php:19&lt;br /&gt;
CertificatePropertiesUIPointer-&amp;gt;accessItem(string &amp;#039;POST&amp;#039;, NULL null)&lt;br /&gt;
2: UIPointer.php:595&lt;br /&gt;
UIPointer-&amp;gt;access(string &amp;#039;POST&amp;#039;)&lt;br /&gt;
3: plesk.php:52&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Possible solution for CentOS on Plesk 10.3: http://forum.parallels.com/showthread.php?t=112512&amp;lt;br&amp;gt;&lt;br /&gt;
Open SSL Guide: http://php.net/manual/en/book.openssl.php&lt;br /&gt;
&lt;br /&gt;
Above is in the case where SSL issued from GlobalSign through 123-reg.co.uk was trying to install.&lt;br /&gt;
&lt;br /&gt;
== [http://en.wikipedia.org/wiki/Server_Name_Indication Server Name Indication - SNI] ==&lt;br /&gt;
&lt;br /&gt;
== Shared SSL Guides (Only for Windows) ==&lt;br /&gt;
&lt;br /&gt;
- Via Tools and Utilities &amp;gt; Shared SSL [Switch on Shared SSL] for specific domain/subscription&amp;lt;br&amp;gt;&lt;br /&gt;
- Go into Subscriptions, click the specific one you switched it on for&amp;lt;br&amp;gt;&lt;br /&gt;
- Manage in Control Panel &amp;gt; Websites and Domains tab&amp;lt;br&amp;gt;&lt;br /&gt;
- Show Advanced Operations&amp;lt;br&amp;gt;&lt;br /&gt;
- Manage each Domain&amp;lt;br&amp;gt;&lt;br /&gt;
- [Switch on Shared SSL] under the specific domain/subscription&amp;lt;br&amp;gt;&lt;br /&gt;
- Leave virtual directory name as is&amp;lt;br&amp;gt;&lt;br /&gt;
- Set httpdocs&lt;br /&gt;
&lt;br /&gt;
http://tutorials.ausweb.com.au/web-hosting/plesk-server-management-windows/managing-shared-ssl.html&amp;lt;br&amp;gt;&lt;br /&gt;
http://www.1hostingvision.com/shop/faq.cfm?Action=foundqa&amp;amp;faqid=564&amp;amp;FAQCategoryID=273&amp;lt;br&amp;gt;&lt;br /&gt;
http://www.codero.com/knowledge-base/questions/51/__print&amp;lt;br&amp;gt;&lt;br /&gt;
http://www.ourshop.com/resources/shared-ssl.html&amp;lt;br&amp;gt;&lt;br /&gt;
http://support.hostgator.com/articles/ssl-certificates/ssl-setup-use/how-to-set-up-and-use-your-shared-ssl&lt;br /&gt;
&lt;br /&gt;
== [http://www.sslshopper.com/ssl-checker.html/ SSL Checker] messages ==&lt;br /&gt;
&lt;br /&gt;
=== SSL doesn&amp;#039;t work with www ===&lt;br /&gt;
&lt;br /&gt;
Checking in [http://www.sslshopper.com/ssl-checker.html/ SSL Checker] if you get &amp;quot;None of the common names in the certificate match the name that was entered. You may receive an error when accessing this site in a web browser.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Go to http://www.sslshopper.com/certificate-decoder.html and enter your Certificate with BEGIN and END. It will show you the common name that it was ordered with. You may need to re-purchase the SSL with www as doing this secures it with and without normally. Buying without may only secure the non www version.&lt;br /&gt;
&lt;br /&gt;
=== Intermediate/chain/CA incorrect ===&lt;br /&gt;
&lt;br /&gt;
If you receive &amp;quot;&amp;#039;&amp;#039;You may need to install an Intermediate/chain certificate to link it to a trusted root certificate.&amp;#039;&amp;#039;&amp;quot; on SSL Checker you need to go to http://www.globalsign.com/support/root-certificate/root-globalsign.php and copy all of that CA into a notepad and then into your domain&amp;#039;s SSL section.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- == [http://kb.parallels.com/1090 Set SSL certificate for Plesk installed inside a Virtuozzo container] == --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Bug: On Plesk 11 for a Wildcard SSL if the CA is not picked or it says it is incorrect when it is the right one, do /opt/psa/admin/bin/nginxmng --disable&lt;br /&gt;
&lt;br /&gt;
== [[SSL Format]] ==&lt;br /&gt;
&lt;br /&gt;
== SSL on Plesk login ==&lt;br /&gt;
&lt;br /&gt;
- Tools and Utilities&amp;lt;br&amp;gt;&lt;br /&gt;
- SSL Certificates&amp;lt;br&amp;gt;&lt;br /&gt;
- Click the checkbox next to the SSL&amp;lt;br&amp;gt;&lt;br /&gt;
- Secure the panel&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== Self-signed certificate ===&lt;br /&gt;
&lt;br /&gt;
This message relates to the un-trusted connection message that is shown when logging into Plesk or cPanel. The certificate used to secure Plesk/cPanel is self signed and is safe to accept. Please note you will also receive this security warning when accessing the WHM (Web Host Manager) or Virtuozzo Control Panel and Parallels Product Installer pages.&lt;br /&gt;
&lt;br /&gt;
When logging into your server over port 8443, you may be presented with a security warning by the web browser. This is due to the type of certificate being used for added security. There are 2 types of certificates: an Authority Signed certificate and a Self Signed certificate.&lt;br /&gt;
&lt;br /&gt;
Both are the exact same level of security, but a self signed certificate is issued by the hosting company or control panel and needs to be accepted in the users browser. This is because the browser does not recognize the hosting company or control panel as the issuer, whereas it already recognizes established authorities who issue SSL certificates.&lt;br /&gt;
&lt;br /&gt;
In order to access your server over port 8443 you will need to accept the security warning.&lt;br /&gt;
&lt;br /&gt;
== [http://www.digicert.com/news/2011-06-03-ssl-renego.htm SSL Renegotiation] ==&lt;br /&gt;
&lt;br /&gt;
== [http://kb.parallels.com/en/939 The wrong certificate is shown for my domain in the browser] ==&lt;br /&gt;
&lt;br /&gt;
== This page includes other resources which are not secure ==&lt;br /&gt;
&lt;br /&gt;
This confirms that it is something in your code.&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Notes:&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
With regards to TLS renegotiation, this is a new feature only recently made public. But the majority of servers do not support this so you would need to install it yourself.&lt;br /&gt;
&lt;br /&gt;
[http://www.globalsign.com/support/csrgen.php Generate CSR]&lt;br /&gt;
&lt;br /&gt;
If the SSL certificate doesn&amp;#039;t match your private key this suggests that it was ordered with the wrong CSR. we would recommend you to contact the SSL provider.&lt;br /&gt;
&lt;br /&gt;
== What an SSL secures ==&lt;br /&gt;
&lt;br /&gt;
By having a SSL and using Secure HTTP this will encrypt sensitive data while transmitting through the Internet. Phishing is down to the coding of the website, permissions of folders and simply setting poor passwords and is therefore not directly related to HTTPS.&lt;br /&gt;
&lt;br /&gt;
Note that SSL will not be enabled for your entire store but only for the sections where sensitive data is transmitted. This is so because secure connections (HTTPS) are slower than regular connections (HTTP), hence SSL is applied only where it is really needed. &lt;br /&gt;
&lt;br /&gt;
1) Confirm that the SSL Certificate was successfully installed. Look at the website to see when HTTPS activates when on a transactional page where personal information will be transmitted through the Internet. &lt;br /&gt;
&lt;br /&gt;
2) It is normal practice to have only these pages resolving via HTTPS.&lt;br /&gt;
&lt;br /&gt;
3) If you wish to use the HTTPS protocol throughout their website (Magento e.g.), go to the Magento Admin area:-&amp;gt; System -&amp;gt; Configuration -&amp;gt; Web. Enable &amp;quot;Use Secure URLs in Frontend&amp;quot;.&lt;/div&gt;</summary>
		<author><name>Rootadminacc</name></author>
	</entry>
</feed>