SSL certificates and HTTPS
HTTPS with automatically renewed SSL certificates protects every connection to your website. Expiry dates are monitored continuously.
Why a valid certificate matters
Without a valid certificate, a website is effectively unusable, even if the server itself works perfectly. Browsers show warnings, forms are flagged as insecure and visitors leave. HTTPS encrypts the connection between browser and server and prevents these warnings.
Shorter lifetimes, automatic renewal
The maximum lifetime of public certificates is falling step by step, down to 47 days by 2029. Manual renewal can hardly keep up reliably. We renew certificates automatically via the ACME protocol, for example with Let's Encrypt. Our monitoring also tracks expiry dates.
Secure configuration
only TLS 1.3 and TLS 1.2, older protocols are disabled
current cipher suites with forward secrecy
HSTS, so that browsers only access the site via HTTPS
all HTTP requests and domain variants redirect to the correct HTTPS address
no content loaded without encryption on encrypted pages
Choosing the right certificate
For most websites, a simple domain-validated certificate is enough. It encrypts just as strongly as more expensive options. Extended certificates are only worthwhile if policies or customers require them.
Internal systems, interfaces and mail servers also need valid certificates. They are included in monitoring so that no connection fails unnoticed.
Approach
First, we test the existing configuration and fix weaknesses. Automatic renewal and monitoring are then set up for all domains and subdomains.