{"id":236,"date":"2016-03-11T16:00:08","date_gmt":"2016-03-11T16:00:08","guid":{"rendered":"https:\/\/sysadminnightmare.com\/?p=236"},"modified":"2016-03-18T03:25:33","modified_gmt":"2016-03-18T03:25:33","slug":"lets-encrypt-installation","status":"publish","type":"post","link":"https:\/\/sysadminnightmare.com\/index.php\/2016\/03\/11\/lets-encrypt-installation\/","title":{"rendered":"Let&#8217;s Encrypt &#8211; Installation"},"content":{"rendered":"<p>Wow, That was Easy .. SO if you are not using it you should, NOW.<\/p>\n<p>Little Back Story: March 8th SecKC Meeting <a class=\"ProfileHeaderCard-screennameLink u-linkComplex js-nav\" href=\"https:\/\/twitter.com\/jamespugjones\">@<span class=\"u-linkComplex-target\">jamespugjones<\/span><\/a>\u00a0spoke about his project @LetsEncrypt <a href=\"https:\/\/LetsEncrypt.org\" target=\"_blank\">LetsEncrypt.org<\/a>. If you were not there you should watch it at <a href=\"https:\/\/www.youtube.com\/watch?v=HWuXfK_YjGA\" target=\"_blank\">SecKC Videos<\/a>. It was an excellent talk. My takeaway from it was that everyone should be running securely (duhh it was SecKC meeting), but he also showed a way for everyone to do it. Use Lets Encrypt!!(Did I mention it was free?)<\/p>\n<p>So this morning I decided to give it a try on my AWS stack. Here are all the steps.<\/p>\n<pre class=\"highlight\"><code>$ sudo apt-get update\r\n$ sudo apt-get install git\r\n$ git clone https:\/\/github.com\/letsencrypt\/letsencrypt\r\n$ cd letsencrypt\r\n$ sudo .\/letsencrypt-auto --apache\r\n<\/code><\/pre>\n<p>Then it walked you through menus:<\/p>\n<ol>\n<li>select the sites on this server you wanted to apply the Cert to<\/li>\n<li>Then some agreements (of course)<\/li>\n<li>HTTP and\/or HTTPS for your site<\/li>\n<li>complete. Wow .. (even a windows sys admin can complete this).<\/li>\n<\/ol>\n<p>Now you have a cert on your website. The Cert is good for 90 days and\u00a0you can automate the renewal with a simple Script (next blog post).<\/p>\n<p>Note: If you (like me) have some staged sites on your server that are not live yet, just don&#8217;t select them on the Screen that selects the Cert to apply to, you will get errors.<\/p>\n<p>Oh yeah, by the way. SSLLabs.com scan of one of the sites after installation<\/p>\n<p><a href=\"https:\/\/i0.wp.com\/sysadminnightmare.com\/wp-content\/uploads\/2016\/03\/LetsEncryptScan.png?ssl=1\" rel=\"attachment wp-att-242\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-242\" src=\"https:\/\/i0.wp.com\/sysadminnightmare.com\/wp-content\/uploads\/2016\/03\/LetsEncryptScan.png?resize=800%2C307&#038;ssl=1\" alt=\"LetsEncryptScan\" width=\"800\" height=\"307\" \/><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Wow, That was Easy .. SO if you are not using it you should, NOW. Little Back Story: March 8th SecKC Meeting @jamespugjones\u00a0spoke about his project @LetsEncrypt LetsEncrypt.org. If you were not there you should watch it at SecKC Videos. It was an excellent talk. My takeaway from it was&#8230; <a class=\"continue-reading-link\" href=\"https:\/\/sysadminnightmare.com\/index.php\/2016\/03\/11\/lets-encrypt-installation\/\"> Continue reading <span class=\"meta-nav\">&rarr; <\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[1],"tags":[],"class_list":["post-236","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p2bgeE-3O","_links":{"self":[{"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/posts\/236","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/comments?post=236"}],"version-history":[{"count":8,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/posts\/236\/revisions"}],"predecessor-version":[{"id":246,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/posts\/236\/revisions\/246"}],"wp:attachment":[{"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/media?parent=236"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/categories?post=236"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sysadminnightmare.com\/index.php\/wp-json\/wp\/v2\/tags?post=236"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}