How to Install SSL/TLS Certificate In LiteSpeed?

1 Star2 Stars3 Stars4 Stars5 Stars (1 votes, average: 5.00 out of 5)
Loading...
Install an SSL Certificate on LiteSpeed

Welcome to web hosting with LiteSpeed! This guide will explore how to use SSL/TLS protection. Our tutorial will also help a seasoned webmaster seeking a hassle-free installation process or a curious enthusiast eager to safeguard their digital domain.

Our mission is two-fold: first, we’ll navigate through the seamless steps of installing an SSL/TLS certificate on LiteSpeed. Fear not, for we shall make this journey as smooth as a glistening river on a summer’s day.

And second, we unveil the secrets to securing the best and most affordable SSL certificates, tailored for your LiteSpeed server, like precious gems waiting to be discovered.

If you’ve already charted your course with a CSR code and certificate application, feel free to set sail with us on this SSL expedition. We shall unlock the power of encryption and instill trust among our visitors.

So, prepare to elevate your website’s security by installing an SSL/TLS certificate on LiteSpeed. Let us begin!

Prerequisites

Ensuring the security of your server is of utmost importance; to accomplish that, you’ll need a few essential elements in your arsenal. Fear not; we shall guide you through the process with clarity and simplicity, ensuring a seamless implementation.

Intermediate Certificates:

These crucial files are the base in enabling devices connecting to your server to identify the issuing CA, a crucial link in the security chain. If you received your SSL certificate in a ZIP folder, you’ll likely find the Intermediate certificate(s) bundled within, also known as a CA Bundle.

Should you not have them, fret not, as you can download the appropriate CA Bundle from a trusted source tailored to complement your specific certificate.

A Private Key:

The guardian of your server’s encryption lies within the private key. This file should reside on your server or be securely kept if you generated the Certificate Signing Request (CSR) using a free generator tool.

While specific platforms like Microsoft IIS might not immediately display the private key, rest assured, it’s meticulously safeguarded by the server.

Server Certificate:

The very foundation of your SSL/TLS protection lies in the server certificate you obtained from the Certificate Authority (CA) for your domain. If you’ve received it through email, keep it safe. Alternatively, you can easily download it from your Account Dashboard by accessing your order details.

Equipping yourself with these vital components – your server certificate, intermediate certificates, and private key fortify your server’s defenses, instilling confidence and trust among your users.

QUICK NOTE: A well-protected server is the cornerstone of a secure online presence, and now you possess the knowledge to embark on this journey with peace of mind. Safeguard your digital domain, and let security pave the way to a seamless web hosting experience.

How to Generate a CSR Code on LiteSpeed?

Before acquiring an SSL Certificate for your website, you must generate a Certificate Signing Request (CSR) code and submit it to your Certificate Authority (CA) for verification. The CSR contains encrypted contact information that ensures the authenticity of your request.

To proceed, you have two options at your disposal:

Option 1: Automatic CSR Generation Using a CSR Generator

Consider utilizing a CSR Generator for a quick and effortless CSR creation process.

Option 2: Manual CSR Generation on LiteSpeed

Follow our detailed guide below to generate a CSR code on LiteSpeed:

Creating Your Private Key and CSR Code

To ensure a secure connection for your website, follow these steps to generate your private key and Certificate Signing Request (CSR) using OpenSSL:

Step 1: Generate Your Private Key

Run the following command in your terminal or command prompt:

openssl genrsa -out server.key 2048

Please note that “server” is the name given to your private key. You can choose any name you prefer, but it is essential to maintain the .key extension.

Step 2: Generate Your CSR Code

Run the following command:

openssl req -new -key server.key -out server.csr

If you assigned a different name to your private key, replace “server.key” with the appropriate name in the command. Additionally, for the “server.csr” part, you can rename it as desired, but remember to keep the .csr extension.

Step 3: Provide Contact Details

During the CSR generation process, you will be prompted to provide the following contact information:

Common Name (CN):

Enter the fully-qualified domain name (FQDN) you wish to protect, such as yoursite.com. For wildcard certificates, include an asterisk (*) before your domain (e.g., *.yoursite.com).

Organization Name (O):

Specify the full legal name of your company, like Your Company LLC.

Organizational Unit (OU):

Name your company’s department requesting the SSL Certificate, e.g., IT.

Locality or City (L):

Provide the full name of your company’s registered city, for example, Albuquerque.

State or Province (ST):

Type the full name of the state or province where your company is legally located, e.g., New Mexico.

Country (C):

Provide the two-letter code of your country, like US. You can find the complete list of country codes online.

Step 4: Save Your CSR Code

Once you have completed the process, your CSR code will reside in the directory where you executed the command. Locate the generated “server.csr” file and open it with a text editor like Notepad.

Step 5: Submit the CSR During SSL Order

To obtain your SSL Certificate, you must share the CSR content, including the BEGIN and END tags, with your chosen SSL vendor during the ordering process. This allows them to validate and issue the SSL Certificate for your website.

You’ve now successfully generated your private key and CSR code, taking a significant stride toward securing your website with an SSL Certificate.

Step-wise Tutorial for Installing an SSL Certificate in LiteSpeed

Ensuring a secure and encrypted connection is crucial for any website, and with LiteSpeed, the process becomes simple and efficient.

Follow these installation instructions to safeguard your server with an SSL certificate:

Step 1: Access your LiteSpeed WebAdmin console and click “Listeners” followed by “Add.”

Step 2: Fill in the following Address Settings to configure the newly created Listener:

  • Enter a friendly internal name for your Listener.
  • Select “Any” from the dropdown, or choose a specific IP-port combination if necessary.
  • By default, HTTPS connections use port 443. If other Listeners are on this port, opt for an alternative such as 8443.
  • Select “Yes.”
  • Add any internal notes to distinguish the Listener in the future. Click “Save.”

Step 3: Navigate to the “Listeners” section again, and choose the Listener Name you previously set (e.g., “SSL”).

Step 4: Once on the SSL tab under your chosen Listener, click the “Edit” button in the SSL Private Key & Certificate section.

Step 5: Configure Filepaths:

Follow these instructions to configure your Certificate filepaths:

  • Private Key File: Provide the path to your previously saved private key generated via OpenSSL.
  • Certificate File: Enter the path to your server certificate the Certificate Authority (CA) sent. You should have it saved locally or in your server directory.

Complete one of the two options below for the successful installation of intermediate certificates:

  a) CA Certificate Path: Enter the path to the intermediate certificate “file” received from the CA.

  b) CA Certificate File: Provide the path to the “directory” containing the intermediate certificates sent by the CA. Click “Save.”

Step 6: Edit SSL Protocol:

Return to the SSL tab under your Listener and click the “Edit” button in the SSL Protocol section. Select “TLSv1.1” and “TLSv1.2” for Protocol Version, and then click “Save.”

Step 7: Virtual Host Mappings:

Head back to the “Listeners” section and choose your Listener Name (e.g., “SSL”). Under your selected Listener, click the “Add” button in the Virtual Host Mappings section.

Step 8: Connect Virtual Host:

In the Virtual Host Mappings section, select the Virtual Host you want to connect to the Listener from the drop-down menu.

Step 9: Enter Domains:

For the chosen Virtual Host, enter all the Domains that connect to your vhost(s). Use commas to separate multiple domains if applicable. Click “Save.”

Step 10: Graceful Restart:

Navigate to your Dashboard by selecting “Dashboard” from the menu. Click the green “Graceful Restart” button to apply the changes.

Congratulations! Your SSL certificate is now successfully installed. To verify the installation, visit your website in a browser at https://yourdomain.tld and check the certificate/site information to ensure HTTPS/SSL is working correctly.

Remember that a server restart might be necessary for the changes.

Looking for a Quick SSL Installation? Certera offers hassle-free SSL Installation Support for your Websites through a dedicated and professional team of experts.

Buy Cheap SSL Certificates
<?xml version="1.0" encoding="UTF-8"?><svg id="Layer_1" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 109.7 29.02"><defs><style>.cls-1{fill:#fff;}</style></defs><path class="cls-1" d="m5.38,22.85c-3.1-.26-5.3-1.92-5.38-4.8h3.6c.1,1.1.67,1.85,1.78,2.09v-4.58c-2.47-.62-5.38-1.32-5.38-4.87,0-2.83,2.26-4.68,5.38-4.92v-1.94h1.54v1.94c3,.24,5.02,1.85,5.23,4.7h-3.62c-.1-.94-.67-1.66-1.61-1.94v4.54c2.5.65,5.42,1.3,5.42,4.85,0,2.45-1.92,4.73-5.42,4.97v1.94h-1.54v-1.97Zm0-10.25v-4.15c-1.1.17-1.87.84-1.87,2.06,0,1.13.77,1.7,1.87,2.09Zm1.54,3.38v4.2c1.22-.22,1.94-1.06,1.94-2.14s-.82-1.68-1.94-2.06Z"/><path class="cls-1" d="m17.62,8.33h-2.33v-3.1h5.78v17.5h-3.46v-14.4Z"/><path class="cls-1" d="m28.27,17.81c.26,1.39,1.15,2.18,2.71,2.18,1.97,0,2.83-1.46,2.83-5.4-.74,1.03-2.16,1.63-3.7,1.63-3.02,0-5.45-1.9-5.45-5.59,0-3.5,2.21-5.81,5.91-5.81,4.75,0,6.22,3.22,6.22,8.76,0,5.95-1.32,9.17-5.95,9.17-3.72,0-5.5-2.38-5.69-4.94h3.12Zm5.23-7.15c0-1.92-1.1-2.98-2.81-2.98s-2.81,1.18-2.81,2.93c0,1.58.89,2.88,2.93,2.88,1.68,0,2.69-1.13,2.69-2.83Z"/><path class="cls-1" d="m41.28,22.9c-1.22,0-2.09-.86-2.09-1.97s.86-1.97,2.09-1.97,2.04.86,2.04,1.97-.86,1.97-2.04,1.97Z"/><path class="cls-1" d="m49.54,17.81c.26,1.39,1.15,2.18,2.71,2.18,1.97,0,2.83-1.46,2.83-5.4-.74,1.03-2.16,1.63-3.7,1.63-3.02,0-5.45-1.9-5.45-5.59,0-3.5,2.21-5.81,5.91-5.81,4.75,0,6.22,3.22,6.22,8.76,0,5.95-1.32,9.17-5.95,9.17-3.72,0-5.5-2.38-5.69-4.94h3.12Zm5.23-7.15c0-1.92-1.1-2.98-2.81-2.98s-2.81,1.18-2.81,2.93c0,1.58.89,2.88,2.93,2.88,1.68,0,2.69-1.13,2.69-2.83Z"/><path class="cls-1" d="m64.56,17.81c.26,1.39,1.15,2.18,2.71,2.18,1.97,0,2.83-1.46,2.83-5.4-.74,1.03-2.16,1.63-3.7,1.63-3.02,0-5.45-1.9-5.45-5.59,0-3.5,2.21-5.81,5.9-5.81,4.75,0,6.22,3.22,6.22,8.76,0,5.95-1.32,9.17-5.95,9.17-3.72,0-5.5-2.38-5.69-4.94h3.12Zm5.23-7.15c0-1.92-1.1-2.98-2.81-2.98s-2.81,1.18-2.81,2.93c0,1.58.89,2.88,2.93,2.88,1.68,0,2.69-1.13,2.69-2.83Z"/><path class="cls-1" d="m81.79,0h3.29l-6.48,27.07h-3.29L81.79,0Z"/><path class="cls-1" d="m96.89,9.43h3.58l-8.23,19.59h-3.58l2.88-6.62-5.33-12.96h3.77l3.43,9.29,3.48-9.29Z"/><path class="cls-1" d="m105.62,22.73h-3.36v-13.3h3.36v2.06c.84-1.37,2.23-2.26,4.08-2.26v3.53h-.89c-1.99,0-3.19.77-3.19,3.34v6.62Z"/></svg>