Skip to main content
DigiCert, Sectigo and GeoTrust SSL certificates
+90 850 259 76 06 WhatsApp Support Become a Reseller
SSL Certificates
Brands
Code Signing LEI Code
Tools
Support Contact WhatsApp Cart
Language
Currency
Get an SSL Certificate
Guides

ISPConfig SSL Certificate Installation and CSR Creation Guide

SSL certificate installation, CSR generation and Let's Encrypt integration in the ISPConfig 3 panel. The complete SSL guide for the open source panel.

14 min read

ISPConfig is an open source hosting control panel widely used on Debian and Ubuntu based servers. It is ideal for professional hosting environments with its multi-server support and flexible configuration options. In this guide, we explain in detail SSL installation, CSR creation and Let's Encrypt integration in the ISPConfig 3 panel.

1. Creating CSR

Via ISPConfig Panel

  1. Login to ISPConfig administration panel
  2. Switch to "Sites" tab
  3. Select the relevant website
  4. Click on the "SSL" tab
  5. Select "Create Certificate" from the "SSL Action" dropdown
  6. Fill in the required information:
    • SSL Country: TR
    • SSL State: Istanbul
    • SSL Locality: Istanbul
    • SSL Organization: Company Name
    • SSL Organization Unit: IT
    • SSL Domain: www.example.com
  7. Click the "Save" button
  8. The CSR will appear in the "SSL Request" field

Creating CSR from Command Line

openssl req -new -newkey rsa:2048 -nodes \
  -keyout /var/www/clients/client1/web1/ssl/example.com.key\
  -out /var/www/clients/client1/web1/ssl/example.com.csr

2. Installing an SSL Certificate

  1. ISPConfig → "Sites" → Select website → "SSL" tab
  2. Select "Save Certificate" from the "SSL Action" dropdown
  3. Fill in the following fields:
    • SSL Key: Paste private key
    • SSL Certificate: CRT certificate content
    • SSL Bundle: CA Bundle / Intermediate certificate
  4. Click the "Save" button
  5. Select "On" from "SSL" dropdown
  6. Save again

3. Let's Encrypt Integration

ISPConfig 3.1+ offers built-in Let's Encrypt support:

  1. Go to "SSL" tab in website settings
  2. Tick the "Let's Encrypt" checkbox
  3. Set "SSL" dropdown to "On"
  4. Click the "Save" button
  5. ISPConfig will automatically obtain and install the Let's Encrypt certificate
✅ Tip: Let's Encrypt certificates are valid for 90 days. ISPConfig's cron job auto-refreshes. To check renewal status: certbot certificates

4. Apache/Nginx SSL Configuration

Apache Vhost (managed by ISPConfig)

# Auto-generated file: /etc/apache2/sites-available/example.com.vhost
<VirtualHost *:443>
    ServerName example.com
    ServerAlias www.example.com
    SSLEngine on
    SSLCertificateFile /var/www/clients/client1/web1/ssl/example.com.crt
    SSLCertificateKeyFile /var/www/clients/client1/web1/ssl/example.com.key
    SSLCertificateChainFile /var/www/clients/client1/web1/ssl/example.com.bundle
</VirtualHost>

5. HTTPS Redirect

  1. "Redirect" tab in ISPConfig site settings
  2. "Redirect Type": R,L (301 permanent)
  3. "Redirect Path": https://www.example.com
  4. Or select "www to non-www + https" from the "SEO Redirect" section

6. Common Errors and Solutions

ErrorSolution
Let's Encrypt: Challenge failedMake sure the .well-known/acme-challenge directory is accessible
SSL certificate not activated in ApacheEnable Apache SSL module: a2enmod ssl && systemctl restart apache2
Error in Vhost configurationTest the configuration with apache2ctl configtest

Frequently Asked Questions

Does ISPConfig multi-server support SSL?

Yes, in ISPConfig's multi-server architecture, each web server can perform independent SSL management. The panel server distributes the certificate information to the relevant web server.

How do I back up my SSL certificate in ISPConfig?

SSL files are stored in the /var/www/clients/clientX/webX/ssl/ directory. Include this directory in your backup plan.

📌 DataSSL: Would you like to get professional support for SSL installations in your ISPConfig panel? Contact our technical support team →
Share this post
Ali Yiğit
Yazar

Ali Yiğit

Recommended SSL Certificates

All Products
EV Certum

Certum Premium EV Multi-Domain SSL

Protect multiple domains at EV level with Certum Premium EV Multi-Domain SSL. Company name visible i

€372.38 /yr
Details
EV Certum

Certum Premium EV SSL

Get the most comprehensive identity validation with Certum Premium EV SSL. Extended validation, comp

€581.75 /yr
Details
EV DigiCert

DigiCert Basic EV SSL

Extended validation with DigiCert Basic EV SSL. The organization name appears in the certificate det

€339.34 /yr
Details