Skip to content

SSL certificates and HTTPS

HTTPS with automatically renewed SSL certificates protects every connection to your website. Expiry dates are monitored continuously.

Why a valid certificate matters

Without a valid certificate, a website is effectively unusable, even if the server itself works perfectly. Browsers show warnings, forms are flagged as insecure and visitors leave. HTTPS encrypts the connection between browser and server and prevents these warnings.

Shorter lifetimes, automatic renewal

The maximum lifetime of public certificates is falling step by step, down to 47 days by 2029. Manual renewal can hardly keep up reliably. We renew certificates automatically via the ACME protocol, for example with Let's Encrypt. Our monitoring also tracks expiry dates.

Secure configuration

  • only TLS 1.3 and TLS 1.2, older protocols are disabled

  • current cipher suites with forward secrecy

  • HSTS, so that browsers only access the site via HTTPS

  • all HTTP requests and domain variants redirect to the correct HTTPS address

  • no content loaded without encryption on encrypted pages

Choosing the right certificate

For most websites, a simple domain-validated certificate is enough. It encrypts just as strongly as more expensive options. Extended certificates are only worthwhile if policies or customers require them.

Internal systems, interfaces and mail servers also need valid certificates. They are included in monitoring so that no connection fails unnoticed.

Approach

First, we test the existing configuration and fix weaknesses. Automatic renewal and monitoring are then set up for all domains and subdomains.

Project enquiry

Back to top