An SSL certificate ensures a secure, encrypted connection between your website and visitors, recognizable by the padlock icon in the browser. Let’s Encrypt provides this security for free and fully automatically. In this article, you’ll learn what it is, how to install it via Plesk, and how to ensure the certificate keeps renewing itself without downtime.
What is Let’s Encrypt and why use it
Let’s Encrypt is a certificate authority that issues free SSL certificates trusted by all modern browsers. The certificate encrypts traffic between visitor and server (HTTPS), which is essential for trust, privacy, and findability. Without a valid SSL certificate, browsers display a warning that a website is not secure, which immediately deters visitors.
The certificate has a limited validity period, so it needs to be renewed regularly. This normally happens automatically once it’s properly set up. In addition to your website, you can also use Let’s Encrypt to securely send and receive business email.
Installing Let’s Encrypt via Plesk
With Plesk hosting, installing a Let’s Encrypt certificate takes just a few clicks. You don’t need to fill out application forms or manually upload validation files, Plesk handles this completely automatically in the background.
Log in to Plesk
Open the Plesk control panel of your hosting package and go to the domain for which you want to set up SSL.
Open SSL/TLS Certificates
Click on the ‘SSL/TLS Certificates’ section for the domain. Here you’ll see an overview of any certificates already installed.
Choose Let’s Encrypt
Click the button to request a free Let’s Encrypt certificate. Select the main domain and any subdomains you want to secure, such as www or mail.
Request the certificate
Confirm the request. Plesk automatically validates domain ownership and installs the certificate immediately.
Enforce HTTPS
Enable the option to automatically redirect visitors to the secure HTTPS version of your website.
Automatic renewal and verification
A Let’s Encrypt certificate has a short validity period, so renewal is essential. Plesk automatically keeps track of this and renews the certificate well before it expires, without you having to do anything. You can check this by going back to the domain’s SSL/TLS overview; there you’ll see the expiration date and status of the certificate.
It’s wise to occasionally check whether automatic renewal actually works, especially after changes to your DNS settings or if you’ve switched during a domain name migration. If renewal unexpectedly fails, Plesk will display a notification so you can take action immediately.
Common issues and solutions
Most issues with Let’s Encrypt arise because the domain is not yet (fully) pointing to the correct server at the time of the request. Therefore, always check that the DNS settings are correct before requesting a certificate.
Another common cause is a firewall or security plugin blocking Let’s Encrypt’s validation attempt. Make sure ports 80 and 443 are accessible to the validation server. With mixed content, where a page loads resources via both HTTP and HTTPS, the browser may still show a warning despite a valid certificate; in that case, update the internal links on your website to HTTPS.
If you get stuck, check the knowledge base for more detailed explanations or contact support. If you’re unsure whether your current provider supports this properly, switching to Tandata is an option where SSL is set up correctly from the start.
Frequently Asked Questions
Does a Let’s Encrypt certificate cost anything?
No, Let’s Encrypt is completely free and has no hidden costs for requesting or renewing.
Do I need to renew the certificate myself?
Not if this has been set up via Plesk. Renewal then happens automatically in the background before the certificate expires.
Does Let’s Encrypt also work for subdomains?
Yes, you can select multiple subdomains during the request, such as www or a subdomain for email, so they’re all covered under the same certificate.
What happens if my certificate expires?
Browsers will show a warning that the connection is not secure. Make sure automatic renewal is active and check this periodically.
Can I use a paid certificate alongside Let’s Encrypt?
Yes, this is possible alongside or instead of Let’s Encrypt, although a paid certificate generally offers no additional technical security.
Conclusion
Installing a free Let’s Encrypt certificate via Plesk is quick to arrange and immediately provides a secure HTTPS connection with automatic renewal. Make sure your DNS settings are correct before requesting the certificate, and occasionally check that renewal is proceeding smoothly.