{"id":4799,"date":"2018-07-02T08:55:37","date_gmt":"2018-07-02T12:55:37","guid":{"rendered":"https:\/\/www.pair.com\/support\/kb\/?post_type=ht_kb&#038;p=4799"},"modified":"2026-03-24T14:08:01","modified_gmt":"2026-03-24T18:08:01","slug":"best-practices-for-ssl-certificates","status":"publish","type":"ht_kb","link":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/","title":{"rendered":"Best Practices for SSL Certificates"},"content":{"rendered":"<p class=\"p1\"><span class=\"s1\"><a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/shared-hosting\/\"><p style=\"background-color:#1a3d6e !important;color:#fff;padding:6px; display:inline-block!important;font-size:12px;font-weight:bold; border-radius:3px;\">Shared<\/p><\/a> <a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/vps\/\"><p style=\"background-color:#1a3d6e !important;color:#fff;padding:6px; display:inline-block!important;font-size:12px;font-weight:bold; border-radius:3px;\">VPS<\/p><\/a> <a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/qs-dedicated\/\"><p style=\"background-color:#1a3d6e !important;color:#fff;padding:6px; display:inline-block!important;font-size:12px; font-weight:bold; border-radius:3px;\">Dedicated<\/p><\/a> <a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/wp-enthusiast\/\"><p class=\"\"style=\"background-color:#1a3d6e!important;color:#fff !important;padding:6px; display:inline-block!important;font-size:12px;font-weight:bold; border-radius:3px;\">WP Enthusiast<\/p><\/a> <a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/wp-professional\/\"><p style=\"background-color:#1a3d6e !important;color:#fff !important;padding:6px; display:inline-block!important;font-size:12px;font-weight:bold; border-radius:3px;\">WP Professional<\/p><\/a> <a style=\"color:#fff; text-decoration:none!important;\" href=\"https:\/\/www.pair.com\/support\/kb\/tags\/wp-professional-plus\/\"><p style=\"background-color:#1a3d6e !important;color:#fff !important;padding:6px; display:inline-block!important;font-size:12px;font-weight:bold; border-radius:3px;\">WP Professional Plus<\/p><\/a> <\/span><\/p>\n<p><span style=\"font-weight: 400;\">If you\u2019re implementing SSL on your site, you want to do it in the best way possible. Take a look at our best practices list below to see what you should (and shouldn\u2019t) do while setting up your SSL certificate. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">A site that has been correctly set up using SSL should fall into two categories: <\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The site has its own dedicated, not-shared IP address<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The site shares an IP address with other sites that are SSL-enabled<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">When you add a domain to your hosting account, you must choose a type of IP hosting for the domain. One of these options is a <\/span><a href=\"https:\/\/www.pair.com\/support\/kb\/what-types-of-ip-addresses-are-available\/#dedicated\"><b>dedicated IP<\/b><\/a><span style=\"font-weight: 400;\">. A dedicated IP address is wholly devoted to your domain and all of its resources will be <em>dedicated<\/em> to the domain's use.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Consequently, having a dedicated IP address gives your domain more power. However, another IP hosting option is to <\/span><i><span style=\"font-weight: 400;\">share<\/span><\/i><span style=\"font-weight: 400;\"> a dedicated IP address between one or more domains. This is a <\/span><a href=\"https:\/\/www.pair.com\/support\/kb\/what-types-of-ip-addresses-are-available\/#shared\"><b>shared IP<\/b><\/a><span style=\"font-weight: 400;\"> address. For more information on the different types of IP hosting, check out our article <\/span><a href=\"https:\/\/www.pair.com\/support\/kb\/what-types-of-ip-addresses-are-available\/\"><span style=\"font-weight: 400;\">What Types of Domain Hosting are Available<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<h3>Which one is your site?<\/h3>\n<p><span style=\"font-weight: 400;\">So which camp does your site fall under? Well, if you don\u2019t know, you have to go check your domains. You can do this by going to the <\/span><a href=\"http:\/\/my.pair.com\/\"><span style=\"font-weight: 400;\">Account Control Center<\/span><\/a><span style=\"font-weight: 400;\"> and visiting the domain section.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Choose the tutorial that reflects your ACC interface type:\u00a0<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"#if-you-are-using-the-legacy-interface\"><span style=\"font-weight: 400;\">Legacy Interface<\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"#if-you-are-using-the-new-acc-interface\"><span style=\"font-weight: 400;\">New ACC Interface<\/span><\/a><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">Not sure what the difference is? See<\/span><a href=\"http:\/\/pair.com\/support\/kb\/which-acc-interface-am-i-using\/\"><span style=\"font-weight: 400;\"> Which ACC Interface Am I Using?\u00a0<\/span><\/a><\/p>\n<h4><span style=\"font-weight: 400;\">If you are using the Legacy Interface:<\/span><\/h4>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Click <\/span><b>Domains<\/b><span style=\"font-weight: 400;\"> in the left sidebar<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Click <\/span><b>Manage Your Domains<\/b><span style=\"font-weight: 400;\"> in the drop-down<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">This will take you to the Domain Name interface. Your domains will be listed here, along with the type of IP address each domain is using. If you click the name of a domain using a Shared IP, you will be able to see which domain\u2019s IP address it is sharing.<\/span><\/li>\n<\/ol>\n<h4><span style=\"font-weight: 400;\">If you are using the New ACC Interface:<\/span><\/h4>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Click <\/span><b>Domains<\/b><span style=\"font-weight: 400;\"> in the top navigation bar.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Hover over your domain to see what type of domain hosting the domain uses<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">If you need to find out which domain is sharing its IP address, you can click the domain\u2019s <\/span><b>Edit<\/b><span style=\"font-weight: 400;\"> button. The IP address details are listed next to <\/span><b>Type <\/b><span style=\"font-weight: 400;\">in the \u201cOverview\u201d section.\u00a0<\/span><\/li>\n<\/ol>\n<h3>Why does this matter?<\/h3>\n<p><span style=\"font-weight: 400;\">Errors can happen if an IP address is shared, but not all domains have the same configuration. Ideally, you want all the domains sharing an IP address to match, such as all domains have SSL certificates or all domains do not have SSL certificates. The errors happen when you have a combination of some domains with SSL and some without on the same IP address. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">This is because SSL certificates use port 443, which allows for encryption. The server knows to use port 443 when the URL begins with HTTPS. However, if there is no SSL certificate on a domain, the URL will begin with HTTP and use port 80. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">Things get tricky when there is a combination of SSL-using and non-SSL using domains on a single IP address. If a visitor attempts to use HTTPS to try to connect to a domain on the IP that doesn\u2019t have SSL, the server can get confused and potentially send the visitor to the wrong domain.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">So for example, let\u2019s say you share a domain with two other domains. The one domain has an SSL certificate, but the two domains do not.<a href=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4.png\" data-rel=\"lightbox-image-0\" data-rl_title=\"\" data-rl_caption=\"\" title=\"\"><img decoding=\"async\" loading=\"lazy\" class=\"alignnone size-full wp-image-4806\" src=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4.png\" alt=\"mismatched ssl image\" width=\"560\" height=\"315\" srcset=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4.png 560w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4-300x169.png 300w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4-50x28.png 50w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4-60x34.png 60w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4-100x56.png 100w\" sizes=\"(max-width: 560px) 100vw, 560px\" \/><\/a><\/span><\/p>\n<p><span style=\"font-weight: 400;\">If someone tries to go to the HTTPS version of one of the shared domains that do <\/span><i><span style=\"font-weight: 400;\">not<\/span><\/i><span style=\"font-weight: 400;\"> have an SSL certificate, the server may accidentally send them to the domain that <\/span><i><span style=\"font-weight: 400;\">does<\/span><\/i><span style=\"font-weight: 400;\"> have SSL.<a href=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5.png\" data-rel=\"lightbox-image-1\" data-rl_title=\"\" data-rl_caption=\"\" title=\"\"><img decoding=\"async\" loading=\"lazy\" class=\"alignnone size-full wp-image-4807\" src=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5.png\" alt=\"intended path image\" width=\"560\" height=\"315\" srcset=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5.png 560w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5-300x169.png 300w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5-50x28.png 50w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5-60x34.png 60w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/5-100x56.png 100w\" sizes=\"(max-width: 560px) 100vw, 560px\" \/><\/a><\/span><\/p>\n<p><span style=\"font-weight: 400;\">However, if <\/span><i><span style=\"font-weight: 400;\">all<\/span><\/i><span style=\"font-weight: 400;\"> domains that are sharing the IP address have an SSL certificate, the server will be able to distinguish between each domain and accurately direct traffic.<a href=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6.png\" data-rel=\"lightbox-image-2\" data-rl_title=\"\" data-rl_caption=\"\" title=\"\"><img decoding=\"async\" loading=\"lazy\" class=\"alignnone size-full wp-image-4808\" src=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6.png\" alt=\"matching ssl image\" width=\"560\" height=\"315\" srcset=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6.png 560w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6-300x169.png 300w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6-50x28.png 50w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6-60x34.png 60w, https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/6-100x56.png 100w\" sizes=\"(max-width: 560px) 100vw, 560px\" \/><\/a><\/span><\/p>\n<h3>Configurations<\/h3>\n<p><span style=\"font-weight: 400;\">If you have a shared IP address, make sure that all the domains match: either all domains have SSL certificates or all domains do not. <\/span><\/p>\n<h4>Good Configurations Examples:<\/h4>\n<p><span style=\"font-weight: 400;\">Here are some examples of configurations that would work without errors. <\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td><b>Domains<\/b><\/td>\n<td><b>SSL Certificate<\/b><\/td>\n<td><b>IP Address<\/b><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain1.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.4<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain2.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.4<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain3.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.4<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain4.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.4<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">No errors are introduced because all of the domains above share the same IP address and do not have any SSL certificates configured.<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td><b>Domains<\/b><\/td>\n<td><b>SSL Certificate<\/b><\/td>\n<td><b>IP Address<\/b><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain1.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.3<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain2.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.3<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain3.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.3<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">No errors are introduced because all the domains above have the same IP address and have an SSL certificate.<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td><b>Domains<\/b><\/td>\n<td><b>SSL Certificate<\/b><\/td>\n<td><b>IP Address<\/b><\/td>\n<\/tr>\n<tr>\n<td>domain1.com<\/td>\n<td>SSL<\/td>\n<td>1.2.3.5<\/td>\n<\/tr>\n<tr>\n<td>domain2.com<\/td>\n<td>No SSL<\/td>\n<td>1.2.3.4<\/td>\n<\/tr>\n<tr>\n<td>domain3.com<\/td>\n<td>SSL<\/td>\n<td>1.2.3.5<\/td>\n<\/tr>\n<tr>\n<td>domain4.com<\/td>\n<td>No SSL<\/td>\n<td>1.2.3.4<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">No errors are introduced because domain1 and domain3 share the same IP address and SSL certificates, while domain2 and domain4 share a different IP address and have no SSL certificates.<\/span><\/p>\n<h4><b>Bad Configuration Examples:<\/b><\/h4>\n<p><span style=\"font-weight: 400;\">Here are some examples of configurations that could result in errors and should be avoided.<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td><b>Domains<\/b><\/td>\n<td><b>SSL Certificate<\/b><\/td>\n<td><b>IP Address<\/b><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain1.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.5<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain2.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.5<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain3.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.5<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">This configuration would generate errors because domain2 has no SSL certificate, while domain1 and domain2 do have SSL certificates. If domain2 was moved to another IP address, then no errors would be generated on this IP address. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">Be sure to move domain2 to its own IP address or an IP address that is only shared with domains that do not have SSL certificates.<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<td><b>Domains<\/b><\/td>\n<td><b>SSL Certificate<\/b><\/td>\n<td><b>IP Address<\/b><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain1.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.6<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain2.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">No SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.6<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">domain3.com<\/span><\/td>\n<td><span style=\"font-weight: 400;\">SSL<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.2.3.6<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">This domain set up would generate errors because the domains sharing the IP address do not have the same SSL configuration. domain3 has an SSL certificate, while domain1 and domain2 do not. Moving domain3 to a new IP address would solve the problem on this IP address. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">You would need to make sure you move domain3 to its own IP address or one that only shares with domains that also have SSL certificates. <\/span><\/p>\n<h3>How to Fix a Bad Configuration<\/h3>\n<p><span style=\"font-weight: 400;\">If you have a combination of SSL-using and non-SSL-using domains, there are generally two ways to fix it. You can move one group of matching domains to another IP address, or you can add\/remove SSL certificates for the rest of the domains so they all match.You can manage your SSL certificates in the <\/span><b>Manage Your SSL <\/b><span style=\"font-weight: 400;\">interface in the Account Control Center. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">To find the <\/span><b>Manage Your SSL Interface:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Choose the tutorial that reflects your ACC interface type:\u00a0<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"#if-you-are-using-the-legacy-interface-2\"><span style=\"font-weight: 400;\">Legacy Interface<\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"#if-you-are-using-the-new-acc-interface-2\"><span style=\"font-weight: 400;\">New ACC Interface<\/span><\/a><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">Not sure what the difference is? See<\/span><a href=\"http:\/\/pair.com\/support\/kb\/which-acc-interface-am-i-using\/\"><span style=\"font-weight: 400;\"> Which ACC Interface Am I Using?\u00a0<\/span><\/a><\/p>\n<h4><span style=\"font-weight: 400;\">If you are using the Legacy Interface:<\/span><\/h4>\n<ol>\n<li><span style=\"font-weight: 400;\">Log in to the Account Control Center (ACC) at <a href=\"http:\/\/my.pair.com\">my.pair.com<\/a><\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Click <\/span><b>Security<\/b><span style=\"font-weight: 400;\"> in the left sidebar, then click <\/span><b>Manage Your SSL<\/b><span style=\"font-weight: 400;\"> in the drop-down<\/span><\/li>\n<\/ol>\n<h4><span style=\"font-weight: 400;\">If you are using the New ACC Interface:<\/span><\/h4>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Log in to the Account Control Center (ACC) at <a href=\"http:\/\/my.pair.com\">my.pair.com<\/a><\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">In the top navigation bar, click <\/span><b>Domains<\/b><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Click the <\/span><b style=\"color: #595959; font-family: Roboto; font-size: 17px; letter-spacing: 0px;\">SSL Certificates<\/b><span style=\"font-weight: 400;\"> button<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\">To move domains to another IP address, you can edit the hosting type of the domain. You can switch the domains to share another dedicated IP address that matches the same SSL configuration. If you do not have another domain with a dedicated IP address and the same SSL configuration, you may want to instead change one of the shared domains to a dedicated domain. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">For more information about changing hosting type, see our article<\/span><a href=\"https:\/\/www.pair.com\/support\/kb\/what-types-of-ip-addresses-are-available\/#changeIP\"><span style=\"font-weight: 400;\"> How to Change Your Domain\u2019s Hosting Type<\/span><\/a><span style=\"font-weight: 400;\">. <\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you\u2019re implementing SSL on your site, you want to do it in the best way possible. Take a look at our best practices list below to see what you should (and shouldn\u2019t) do while setting up your SSL certificate. A site that has been correctly set up using SSL&#8230;<\/p>\n","protected":false},"author":11,"comment_status":"closed","ping_status":"closed","template":"","format":"standard","meta":[],"ht-kb-category":[28],"ht-kb-tag":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v21.8.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Best Practices for SSL Certificates - Knowledge Base - Pair Networks<\/title>\n<meta name=\"description\" content=\"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Best Practices for SSL Certificates - Knowledge Base - Pair Networks\" \/>\n<meta property=\"og:description\" content=\"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/\" \/>\n<meta property=\"og:site_name\" content=\"Knowledge Base - Pair Networks\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/pairnetworks\/\" \/>\n<meta property=\"article:modified_time\" content=\"2026-03-24T18:08:01+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4.png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@pairNetworks\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/\",\"url\":\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/\",\"name\":\"Best Practices for SSL Certificates - Knowledge Base - Pair Networks\",\"isPartOf\":{\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#website\"},\"datePublished\":\"2018-07-02T12:55:37+00:00\",\"dateModified\":\"2026-03-24T18:08:01+00:00\",\"description\":\"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.pair.com\/support\/kb\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Best Practices for SSL Certificates\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#website\",\"url\":\"https:\/\/www.pair.com\/support\/kb\/\",\"name\":\"Knowledge Base - Pair Networks\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.pair.com\/support\/kb\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#organization\",\"name\":\"Pair Networks\",\"url\":\"https:\/\/www.pair.com\/support\/kb\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2022\/02\/Gb_TUkUE_400x400.jpeg\",\"contentUrl\":\"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2022\/02\/Gb_TUkUE_400x400.jpeg\",\"width\":360,\"height\":360,\"caption\":\"Pair Networks\"},\"image\":{\"@id\":\"https:\/\/www.pair.com\/support\/kb\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/pairnetworks\/\",\"https:\/\/twitter.com\/pairNetworks\",\"https:\/\/www.instagram.com\/pairnetworks\/\",\"https:\/\/www.linkedin.com\/company\/2269676\/\",\"https:\/\/www.pinterest.com\/pairnetworksinc\/pins\/\",\"https:\/\/www.youtube.com\/user\/pairnetworks\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Best Practices for SSL Certificates - Knowledge Base - Pair Networks","description":"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/","og_locale":"en_US","og_type":"article","og_title":"Best Practices for SSL Certificates - Knowledge Base - Pair Networks","og_description":"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.","og_url":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/","og_site_name":"Knowledge Base - Pair Networks","article_publisher":"https:\/\/www.facebook.com\/pairnetworks\/","article_modified_time":"2026-03-24T18:08:01+00:00","og_image":[{"url":"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2018\/07\/4.png"}],"twitter_card":"summary_large_image","twitter_site":"@pairNetworks","twitter_misc":{"Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/","url":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/","name":"Best Practices for SSL Certificates - Knowledge Base - Pair Networks","isPartOf":{"@id":"https:\/\/www.pair.com\/support\/kb\/#website"},"datePublished":"2018-07-02T12:55:37+00:00","dateModified":"2026-03-24T18:08:01+00:00","description":"Minimize the chance of SSL errors by checking out our list of best practices when adding an SSL certificate to your website.","breadcrumb":{"@id":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.pair.com\/support\/kb\/best-practices-for-ssl-certificates\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.pair.com\/support\/kb\/"},{"@type":"ListItem","position":2,"name":"Best Practices for SSL Certificates"}]},{"@type":"WebSite","@id":"https:\/\/www.pair.com\/support\/kb\/#website","url":"https:\/\/www.pair.com\/support\/kb\/","name":"Knowledge Base - Pair Networks","description":"","publisher":{"@id":"https:\/\/www.pair.com\/support\/kb\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.pair.com\/support\/kb\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.pair.com\/support\/kb\/#organization","name":"Pair Networks","url":"https:\/\/www.pair.com\/support\/kb\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.pair.com\/support\/kb\/#\/schema\/logo\/image\/","url":"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2022\/02\/Gb_TUkUE_400x400.jpeg","contentUrl":"https:\/\/www.pair.com\/support\/kb\/wp-content\/uploads\/2022\/02\/Gb_TUkUE_400x400.jpeg","width":360,"height":360,"caption":"Pair Networks"},"image":{"@id":"https:\/\/www.pair.com\/support\/kb\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/pairnetworks\/","https:\/\/twitter.com\/pairNetworks","https:\/\/www.instagram.com\/pairnetworks\/","https:\/\/www.linkedin.com\/company\/2269676\/","https:\/\/www.pinterest.com\/pairnetworksinc\/pins\/","https:\/\/www.youtube.com\/user\/pairnetworks"]}]}},"_links":{"self":[{"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb\/4799"}],"collection":[{"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb"}],"about":[{"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/types\/ht_kb"}],"author":[{"embeddable":true,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/comments?post=4799"}],"version-history":[{"count":8,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb\/4799\/revisions"}],"predecessor-version":[{"id":10580,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb\/4799\/revisions\/10580"}],"wp:attachment":[{"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/media?parent=4799"}],"wp:term":[{"taxonomy":"ht_kb_category","embeddable":true,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb-category?post=4799"},{"taxonomy":"ht_kb_tag","embeddable":true,"href":"https:\/\/www.pair.com\/support\/kb\/wp-json\/wp\/v2\/ht-kb-tag?post=4799"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}