Flash Sale:75% Off Hosting + Free DomainEnds in13h47m14sView Plans
Hostvento logoHostvento

Use AutoSSL in cPanel to Get Free HTTPS

This guide explains AutoSSL, shows how to run it for your domains and helps you fix common problems.

SSL and Security2 min read11 steps10 screenshots

What is AutoSSL?

An SSL certificate is a digital badge that makes your website safe and adds a padlock. AutoSSL is a cPanel feature that gets these certificates for your domains for free and renews them before they run out. You do not have to do the work yourself. cPanel is the control panel where you manage your hosting.

kb-image-login-window

The server owner must turn AutoSSL on. Ask Hostvento support if it is on for your plan.

Steps to install

  1. Log in to cPanel. You can find the link in your client area or in your welcome email.
  2. In the Security section, click SSL/TLS Status.
    kb-image-ssl-tls-certificate
    kb-image-wizard-section
    kb-image-status-section
    kb-image-certificates-section
  3. You will see a list of your domains. A red or crossed icon means no valid certificate. A green padlock means it is secure.
  4. Tick the boxes beside the domains you want to secure.
  5. Click Run AutoSSL.
  6. Wait a few minutes. The check can take a while.
  7. Refresh the page. The padlock should turn green.
  8. Open your site with https:// to check.
    kb-image-keys-section

Why it can fail

AutoSSL first proves you control the domain. It does this by placing a small file on your site and checking it from outside. If the check cannot reach that file, it fails. Common reasons are:

  • The domain points elsewhere. The DNS must point to your hosting. DNS is the phone book of the internet. Changes can take some hours to spread.
  • A redirect blocks the check. Rules in your .htaccess file may send every request somewhere else. The .htaccess file holds extra rules for your site.
    kb-image-requests-section
  • A firewall or security rule blocks the check.
  • Cloudflare or another proxy is in front of the domain.
  • The domain is a new one and not ready yet.
    kb-image-manage-ssl-o
    kb-image-manage-ssl-t

How to fix it

  1. On the SSL/TLS Status page, click the domain to see the error message. It tells you the reason.
  2. Fix the cause. For example, correct your DNS or remove a rule that blocks the path /.well-known/.
  3. Click Run AutoSSL again.
Tip: If you cannot find the cause, open a support ticket and include the error text from the status page.

Quick recap

  • AutoSSL gives free certificates and renews them for you.
    kb-image-settings-section
  • Open SSL/TLS Status and click Run AutoSSL.
  • Failures usually come from DNS, redirects or firewalls.
  • Read the error and run it again after the fix.