Setting Up a Wildcard SSL on cPanel/WHM

Reference | from rapidsslonline.com | in ,, | by rapidsslonline CheapSSL

A Wildcard Certificate means all of your sub-domains will resolve to the same location, regardless of the non-SSL Document-Root specification. A user will need to purchase a wildcard SSL from a vendor or a reseller that supplies them.nSimilar to having multiple certificates installed on a server, each sub-domain containing the certificate needs its own IP as well. Wildcard SSL’s do not work like Wildcard DNS – you will have to specifically install the certificate on each sub-domain. Following are two methods to set up a Wildcard SSL for a domain.nMultiple AccountsnIn a case where you have each sub-domain hosted as a separate cPanel account, and each cPanel account has its own IP address, then follow these steps:n• Generate the Certificate Signing Request (CSR) in WHM, using *.domain.comn• There are two ways to change a site’s IP address:niii. Via WHM:nGo to WHM > Change site’s IP Address, select the account, then select the IPniv. Via Command Line:n/usr/local/cpanel/bin/setsiteip -u $user $ipnWhen you’ve obtained the certificate, go to WHM > Install a SSL Certificate and Setup the Domain and paste in the CRT and CA Bundle for *.domain.comn• The fields should auto-populate, in which case you need to make sure the IP is correct, then change the SSL hostname from *.domain.com to the target sub-domainn• Click install to install the certificatenOne AccountnThis method may be best for users that are not resellers or that are on shared hosting servers, where having multiple cPanel accounts may not be ideal. In this case, you’d have one cPanel account and assign multiple IPs to its sub-domains:n• Generate the Certificate Signing Request (CSR) in WHM, using *.domain.comn• These are the steps to assign dedicated IPs to multiple sub-domains on the same accountnVI. Edit /var/cpanel/userdata/$USER/$SUBDOMAIN.$DOMAIN for each subdomain (for addon/parked domains you’ll usually edit the file for the subdomain associated with the addon/parked domain) and change the IP value to a “dedicated” IP.nVII. Run /scripts/rebuildhttpconfnVIII. Edit the DNS zone for the subdomain (which will likely be attached to the parent domain) and update the a-record to point to that IP as well. Then synchronize the zone out to the DNS cluster, if one exists:nIX. /scripts/dnscluster synczonenX. Edit /etc/domainips and add an entry for that sudomain to point to the IP and run /scripts/rebuildippool to make sure the IP is marked as taken.n• When you’ve obtained the certificate, go to WHM > Install a SSL Certificate and Setup the Domain and paste in the CRT and CA Bundle for *.domain.comn• The fields should auto-populate, in which case you need to make sure the IP is correct, then change the SSL hostname from *.domain.com to the target sub-domainn• Click install to install the certificatenSo, you can save your time to manage numerous certificates for sub-domains and even save the money as Wildcard SSL Certificates such as RapidSSL Wildcard SSL or GeoTrust True BusinessID Wildcard will provide security for all your sub-domains with one main domain name.nAbout the Author: RapidSSLonline is one of the largest cheap SSL certificate providers and is a Platinum partner for VeriSign, GeoTrust, Thawte and RapidSSL. It provides 24/7 support for any question, anytime. For more information about RapidSSLonline, please visit http://www.rapidsslonline.com or contact Kent Roberts at sales@rapidsslonline.com.

No related posts.

» Read More

OLDER:

NEWER:

Leave a Comment

Most Recent Posts

Read Back Issues of WHIR Magazine

  • Thumbnail image for The Social Media Issue

    May 2012 - The Social Media Issue

    Read the Digital Edition – It seems rather serendipitous that, as we began preparing to launch this social media focused issue of WHIR magazine, the WHIR organization, and other iNET Interactive editorial properties began working in earnest to measure and track engagement as a metric on our websites and on the content we publish.

    Read The Digital Edition
  • Thumbnail image for 2012 Hottest Hosts Directory

    February 2012 - 2012 Hottest Hosts Directory

    Read the Digital Edition – This edition of our Hottest Hosts buyer’s guide and directory issue is the fifth instance of the annual publication, a milestone that kind of snuck up on me, personally, but which I think provides an intriguing validation of the format, and of the principle behind it. The hosted services industry …Read More

    Read The Digital Edition
  • Thumbnail image for The Killer Business Model

    October 2011 - The Killer Business Model

    Read the Digital Edition – In pursuit of some inspiration for your killer business model, we sought out some of the really cool things being done in the hosting space by providers trying to stand out from the crowd. They’re not all huge companies yet, but they’ve all got some really interesting ideas, and more importantly, they’re looking at innovating in a way that could inspire some really original thinking from you.

    Read The Digital Edition