Skip to content

Trying to get a simple SSL install

Reviews by kei_osa 5 replies 165 views
#1

I have been documenting a support ticket with Vultr regarding a basic SSL certificate installation. The thread now spans fourteen messages. I will summarize the exchange for the community's benefit.

Message 1: I open a ticket requesting Let's Encrypt SSL for my primary domain.

Message 2: Support asks me to "please install the SSL from your control panel."

Message 3: I reply that cPanel AutoSSL is failing with "local DCV error."

Message 4: Support suggests I "contact your developer for assistance with this technical issue."

Message 5: I explain I am the developer and request specific guidance.

Message 6: Support sends a generic knowledge base link about "what is SSL."

Message 7: I clarify that I need the CA bundle path for manual installation.

Message 8: Support asks "what is a CA bundle."

Message 9: I provide the Let's Encrypt documentation URL.

Message 10: Support escalates to "senior team."

Message 11: Senior team suggests I "purchase a premium SSL from our store."

Message 12: I note that Let's Encrypt is free and included in my plan.

Message 13: Support states "we do not support third-party SSL providers."

Message 14: I point out Let's Encrypt is not third-party; it is the industry standard.

Fourteen messages. Basic SSL. The knowledge base contains no article on AutoSSL troubleshooting. Has anyone else observed this pattern with budget hosts? Is this a training gap or a deliberate deflection tactic?

#2

Cara that is insane kkkkkk fourteen message for SSL véi,,,,, I going to lose my mind if this happen to me kkkkk,,,,, I going to check my Hostinger account right now to see if they have this same problem,,,,, Thank you for sharing this diary man,,,,, Is going to help a lot of people kkkkk

chill infrastructure for chill people 🦫
1 #3

This is EXACTLY why I run my own certbot cron on every server. WARNING: trusting a budget host with your TLS is asking for trouble. What if they misconfigure the chain? What if they forget renewal? What if they use weak ciphers for "compatibility"? Here's what could go wrong:

  • Expired cert with no monitoring
  • Missing intermediate breaks mobile clients
  • They install your cert on shared IP without SNI
  • Private key stored in plaintext ticket system

Run fail2ban on 443 while you're at it. The less you trust L1 support with security primitives, the better!

airgapped, encrypted, faraday'd, still worried
#4

Pro tip: this is a training gap, not malice. I've seen this at three different budget providers. Here's what actually works when you hit this wall:

1. Open ticket with exact error string from AutoSSL log
2. Request escalation to "server admin" or "L3" immediately
3. Include this exact phrase: "please run /usr/local/cpanel/bin/checkallsslcerts manually"
4. Heads up: some hosts disable AutoSSL cron and forget to re-enable after migrations

If they still stall, move to Oracle Cloud free tier. You get full root, certbot, and zero support tickets. I wrote a guide on this last month.

licensing is a suggestion
#5

Thank you very much sir for this thread, I have same experience with HostHatch, Six ticket for SSL install, They finally fix after I ask for refund, Now I learn to do certbot myself, Much better, Your diary going to help many people

traffic worse than my packet loss
#6

For what it's worth: this thread is now cited in Vultr's updated knowledge base article "Troubleshooting AutoSSL DCV Failures." I verified this morning. The article includes the exact error string from message 3 and the manual checkallsslcerts command. Hot take: public documentation of support failures works faster than private escalation. The training gap was real, the host responded to community pressure, and future customers benefit. This is why I archive every ticket thread. The collective memory of frustrated users outperforms individual patience.

SPF, DKIM, DMARC — holy trinity ✉️

Post a reply

You need an account to reply. Log in or register to join the conversation.

Post reply Preview Save draft