Jump to content


Photo

SSL problem

tommy ssl

  • Please log in to reply
9 replies to this topic

#1 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 04 June 2018 - 09:17 AM

Hi,

I am facing a problem of SSL while trying to access https://whm.distribure.cf/ or https://cpcalendars.distribure.cf/ .

It says:

 

"whm.distribure.cf uses an invalid security certificate.

The certificate is only valid for tommy.heliohost.org

Error code: SSL_ERROR_BAD_CERT_DOMAIN "

 

HTTP Strict Transport Security (HSTS) is activated on my website. So there is no change of adding exception. I am using Let's Encrypt Cert. as I faced some activation problem with the cPanel's Cert which was provided.

 

Will you please look after this matter?

 

-Thanks


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif


#2 ziad87

ziad87

    Rank III Member

  • Members
  • PipPipPip
  • 171 posts
  • Gender:Male

Posted 04 June 2018 - 04:34 PM

Um, you are able to proceed as HSTS is not enabled. Also you don't need WHM. It is only for the admins. The problem with cpanel DCVs are that they must check with non secure HTTP, any forcing of SSL will stop the certificate getting issued.
You can use wildcard domains on let's encrypt too.

~Ziad "He likes to play with WHM / Cpanel, and he totally messed it up fixed it." server_uptime_t.gifserver_load_t.gif

What? I did nothing wrong! :rolleyes:  Server: Tommy, domain ziad87.heliohost.org, user ziad87

 
 


#3 wolstech

wolstech

    Rank X Member

  • Root Admin
  • 9,565 posts
  • Gender:Male
  • Location:Pennsylvania

Posted 04 June 2018 - 05:04 PM

Correct. We do not use or support HSTS. If the website needs to force SSL, you must add an exception for the .well-known folder in the .htaccess file. This folder must be accessible over unsecured http or the certs will not issue.

WHM is for root admins only. That will never work for you and would only serve to get your IP address blocked for failed logins.

Also, be aware that certificates take up to 24 hours to issue after a domain is added and configured correctly.

Please do not PM me for support. Posting on our forums lets all of us learn.

Do you play Minecraft? | Server Monitors | And the Dumbass of the Decade award goes to...


#4 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 05 June 2018 - 04:53 AM

Thanks to both of you for providing the informations :)


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif


#5 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 08 June 2018 - 05:34 AM

I am facing another problem. This is the result of scanning my server:

+ SSL Info:        Subject:  /CN=nossl.heliohost.org
                   Altnames: nossl.heliohost.org, cpanel.nossl.heliohost.org, mail.nossl.heliohost.org, webdisk.nossl.heliohost.org, webmail.nossl.heliohost.org, www.nossl.heliohost.org
                   Ciphers:  ECDHE-RSA-AES256-GCM-SHA384
                   Issuer:   /C=US/ST=TX/L=Houston/O=cPanel, Inc./CN=cPanel, Inc. Certification Authority

------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

+ Hostname 'distribure.cf' does not match certificate's names: nossl.heliohost.org, cpanel.nossl.heliohost.org, mail.nossl.heliohost.org, webdisk.nossl.heliohost.org, webmail.nossl.heliohost.org, www.nossl.heliohost.org

-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

 

I am using Let's Encrypt Certificate.


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif


#6 wolstech

wolstech

    Rank X Member

  • Root Admin
  • 9,565 posts
  • Gender:Male
  • Location:Pennsylvania

Posted 08 June 2018 - 11:27 AM

That happens if you scan the domain before the certificate finishes installing. NoSSL is the account responsible for showing the "SSL Not Installed" messages that appear when certificates are missing. I just tested the domain in question in a browser and it works fine over HTTPS. 

 

Also, I noticed from your template that you may be planning to offer free movies or music on your site. Doing this may get you suspended for copyright infringement since most free sources of this content are illegal. As a reminder, providing links to illegal content is infringement even if you don't host the content yourself. While there's no content on the site yet, please keep this in mind when designing your site to avoid getting suspended.


Please do not PM me for support. Posting on our forums lets all of us learn.

Do you play Minecraft? | Server Monitors | And the Dumbass of the Decade award goes to...


#7 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 10 June 2018 - 06:29 AM

That happens if you scan the domain before the certificate finishes installing. NoSSL is the account responsible for showing the "SSL Not Installed" messages that appear when certificates are missing. I just tested the domain in question in a browser and it works fine over HTTPS. 

 

Also, I noticed from your template that you may be planning to offer free movies or music on your site. Doing this may get you suspended for copyright infringement since most free sources of this content are illegal. As a reminder, providing links to illegal content is infringement even if you don't host the content yourself. While there's no content on the site yet, please keep this in mind when designing your site to avoid getting suspended.

Okay. Thanks for informing me . I want to know one more thing, if I provide links to download books on different subjects for personal use (you will find some in https://distribure.cf/comp/a_plus.php ) then is the same rule of infringement applicable?


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif


#8 wolstech

wolstech

    Rank X Member

  • Root Admin
  • 9,565 posts
  • Gender:Male
  • Location:Pennsylvania

Posted 10 June 2018 - 10:30 AM

Are these books free to distribute?

If they're paid content, you cannot legally distribute them for any purpose without a license (and/or paying the publisher for each copy downloaded).

Please do not PM me for support. Posting on our forums lets all of us learn.

Do you play Minecraft? | Server Monitors | And the Dumbass of the Decade award goes to...


#9 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 11 June 2018 - 06:40 AM

No. I googled about this. I can only share the amazon link and cannot share my books publicly.


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif


#10 rajdis

rajdis

    Rank II Member

  • Members
  • PipPip
  • 73 posts
  • Gender:Male
  • Location:India

Posted 11 June 2018 - 06:41 AM

Thanks for warning me. :)


server_load_s.gifserver_load_j.gif  server_load_t.gif

server_uptime_s.gifserver_uptime_j.gifserver_uptime_t.gif






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users