How to Install a Free SSL Certificate Using Let's Encrypt via cPanel

Short version: log in to cPanel at https://yourdomain.com:2083, open Let's Encrypt SSL (or SSL/TLS Status / AutoSSL) under Security, click Issue next to your domain and confirm. The certificate is issued in a few seconds, costs nothing, and renews itself every 90 days as long as AutoSSL stays enabled. Finish by redirecting all HTTP traffic to HTTPS.


Why install an SSL certificate?


An SSL certificate encrypts the connection between your website and its visitors. That matters for three reasons:


  • Security: data sent through forms, logins and checkouts cannot be read in transit.
  • Search ranking: Google favours sites served over HTTPS.
  • Trust: browsers show a padlock next to your address instead of a "Not secure" warning.

Let's Encrypt issues these certificates for free, and cPanel can install them for you in a few clicks.


How to install a free SSL certificate in cPanel, step by step


Step 1: Log in to cPanel


  1. Open this address in your browser, replacing yourdomain.com with your domain or your server's IP address: https://yourdomain.com:2083
  2. Enter your cPanel username and password.

Step 2: Find the Let's Encrypt tool


  1. Scroll down to the Security section.
  2. Click Let's Encrypt SSL. Depending on your cPanel version, it may appear as SSL/TLS Status or AutoSSL instead.

Can't find it? Ask our support team to enable Let's Encrypt on your account.


Step 3: Issue the certificate for your domain


  1. You will see a list of every domain on your account. Next to the domain you want to secure, click Issue.
  2. On the options screen, leave Include Wildcard? unchecked unless you need a wildcard certificate.
  3. Keep Add cPanel subdomains? checked.
  4. Make sure HTTP-01 is selected as the validation method (it usually is by default).
  5. Click Issue again. Installation takes a few seconds and ends with a success message.

Step 4: Check the certificate on your site


Open https://yourdomain.com in your browser. If everything worked, a padlock appears next to the address.


No padlock?


  • Check that the certificate was issued for the right domain.
  • Open the site in a private (incognito) window to rule out your browser's cache.

How to redirect all traffic to HTTPS


This step is optional but recommended: it sends every visitor to the secure version of your site automatically. There are two ways to do it.


Option 1: A cPanel redirect


  1. Go back to cPanel.
  2. Under Domains, open Domains or Redirects.
  3. Create a permanent (301) redirect from http://yourdomain.com to https://yourdomain.com.

Option 2: The .htaccess file


Open the File Manager, find the .htaccess file in your site's folder and add these lines:


RewriteEngine On
RewriteCond %{HTTPS} off
RewriteRule ^(.*)$ https://%{HTTP_HOST}%{REQUEST_URI} [L,R=301]


How does automatic renewal work?


Let's Encrypt certificates are valid for 90 days, but you never have to renew them by hand. In the Let's Encrypt SSL or AutoSSL screen, make sure AutoSSL is enabled. The certificate will then renew itself every 90 days with no action on your side.


Tips and troubleshooting


  • Install SSL as soon as the site goes live, for your visitors' security and for search ranking.
  • Secure every domain separately if your account has more than one.
  • Check renewals now and then to make sure AutoSSL is doing its job.

If the certificate was not issued:


  • Make sure the domain points to your server (correct DNS records).
  • Make sure no firewall or security restriction is blocking access to the server.

If the padlock does not appear:


  • Look for insecure content on your pages (mixed content), such as images loaded over http://.
  • Check that your HTTPS redirect is set up correctly.

Frequently asked questions


Is a Let's Encrypt certificate really free?


Yes. Let's Encrypt issues certificates at no cost, and cPanel installs and renews them for you.


How long does a Let's Encrypt certificate last?


90 days. With AutoSSL enabled it renews automatically, so it never expires in practice.


Do I need a wildcard certificate?


Only if you need to cover every subdomain of a domain with one certificate. For most sites, leave Include Wildcard? unchecked.


What if Let's Encrypt is missing from my cPanel?


Contact our support team and we will enable it on your account.


Conclusion


Installing a free SSL certificate through cPanel takes a few minutes: issue the certificate with Let's Encrypt, confirm the padlock, redirect HTTP to HTTPS and leave AutoSSL on so it renews by itself. If you need a hand at any step, the OMC support team is always here to help.