Why do I See site not secure error while login into plesk or webmail ?


Windows Reseller Web Hosting Control Panel has SSL installed in it. While login to the Plesk it will show security exception to go to the login page.

 


Share This Now: [addtoany]

Watch Reseller Hosting Video Tutorial



Procedure

Please note that the error you are getting while accessing your Plesk is because the certificate installed in the the server is open ssl. The server certificate is installed with open ssl to keep our servers anonymous for resellers itself. Please ignore this warning and confirm this security exception, so that you will never face such warning again.

Please note that the SSL alert that you get [ Untrusted Connection ] is due to the fact that the server uses Open SSL certificate for SSL. Please note that Open SSL is used in the server side for your protection only. This does no harm to you. You can just ignore it and proceed further or you can install the certificate in your browser so that such an alert will not come in future.

Why such a certificate [ Open SSL ] is used in the first place ?

Many customers ask this question. Why should be undergo such minor irritation, why is that other hosting providers work fine with them without SSL itself ?

The answer is simple. Better Security. We force our users to use ssl while accessing Plesk or webmail to make sure that their login details are safeguarded. Consider a situation where your system is infected with malware. When you login to whm or webmail, your login will be sent to the remote attacker and he can use that to deface all your websites. Now when SSL is enabled, even if your system is infected, it will encrypt your login details and hence the remote attacker cannot get your login details. In short, forcing SSL does more good than harm. Why other hosting providers do not do this, because, they leave your account security to you.

Is open ssl is safe ?

Absolutely, the ssl certificate we use is safe and provide the same or better security offered by any commercial certificate like thawte or verisign. But open ssl certificate do not provide domain verification [ which is not required as every customer accesses control panel in their own name ] and hence they trigger an alert that it is untrusted etc.

What I do now ?

If you are using Mozilla Firefox, follow as below

Click on I understand the risk>>Add exception>>get certificate>>Confirm security certificate.

For Internet Explorer, follow the steps below:
=======
# Click Continue to this website (not recommended)
# Click on the ‘Certificate Error‘ on the right of the website URL.
# Click on the ‘View certificates‘ at the bottom
# Click on “Install Certificate…” then ‘Next‘
# Choose ‘Place all certificates in the following store‘ and click on ‘Browse‘
# Select ‘Trusted Root Certification Authorities‘ and click on ‘‘OK‘
# Choose ‘Next‘ and ‘Finished‘ to add the certificate
# A security warning will pop up, choose ‘Yes‘ to install this certificate
# Close and relaunch Internet Explorer
======

In chrome, Click Proceed Anyway

In IE, Click Continue to this website (not recommended).

You can ignore the message and click on proceed further on this.

Screen Shots

Refer Screen Shots

Troubleshooting FAQs

Reseller Hosting Plesk Troubleshooting FAQs

Unable to remove open ssl alert message while login into master control panel ?

Solution :

Please note that we have installed Open SSL for the server. Open SSL is used in the server side for your protection only. This does no harm to you. You can just ignore it and proceed further or you can install the certificate in your browser so that such an alert will not come in future.

Better Security. We force our users to use ssl while accessing cpanel/whm or webmail to make sure that their login details are safeguarded. Consider a situation where your system is infected with malware. When you login to whm or webmail, your login will be sent to the remote attacker and he can use that to deface all your websites.

Now when SSL is enabled, even if your system is infected, it will encrypt your login details and hence the remote attacker cannot get your login details. In short, forcing SSL does more good than harm.

1. Also note that the ssl certificate we use is safe and provide the same or better security offered by any commercial certificate like thawte or verisign.

2. But open ssl certificate do not provide domain verfication [ which is not required as every customer accesses control panel in their own name like https://domainname:8443] and hence they trigger an alert that it is untrusted etc.

3. If you are using outlook mail interface, you can use your domain name as hostname. If the trusted SSL is installed means you can use the server IPs instead of hostname.


FAQs

Downloads

Related Downloads















Related Articles

Related Reseller Hosting Support Articles

How do I Login to my Reseller Web Hosting Control Panel[Plesk]?