This article is a mirror article of machine translation, please click here to jump to the original article.

View: 3747|Reply: 7

Buy the cheapest domain name wildcard SSL certificate for 30 yuan

[Copy link]
Posted on 3/4/2023 10:26:31 PM | | | |
AlphaSSL certificate is an information security product under GlobalSign, a world-renowned SSL certificate authority, and is a professional SSL certificate provider specializing in providing cheap SSL certificates.

In addition, in addition to being cheap, AlphaSSL certificates also have the advantage of strong compatibility and strong encryption functions. AlphaSSL certificates are recognized by all popular browsers and mobile devices. The AlphaSSL certificate is issued from the 2048-bit GlobalSign root certificate, which is one of the longest-running and most trusted authorities in the world, while also receiving 256-bit encryption strength between customers and websites, which is the most used encryption strength today.

This article is usedmicromall.netTake domain name application wildcards as an example.

Preparation before applying

  • Delete all CAA resolution recordsOr add a CAA resolution record with a value of 0 issuewild "globalsign.com", otherwise the certificate may not be successfully issued. (Required)
  • Pause resolution of CNAME records, otherwise you may not receive the certificate confirmation email. (Required) (If you are requesting a certificate for your primary domain, you only need to pause CNAME resolution for your primary domain. You do not need to pause CNAME resolution for subdomains.)
  • Resolves the MX record to api.moeclub.org weight 10


As shown below:



Prepare the CSR for the domain name

Generate address:The hyperlink login is visible.to save the generated content, as shown in the figure below:

https://www.chinassl.net/ssltools/generator-csr.html
https://www.sslaaa.com/tools/csr-generator


Buy AlphaSSL Apply Token

Address:The hyperlink login is visible., as shown in the figure below:



After the purchase is complete, view the token value in the management product, as shown in the following image:



Apply for a Domain Name Wildcard SSL certificate

Address:The hyperlink login is visible.

Fill in the prepared CSR and Apply Token information, and click "Get AlphaSSL!", as shown in the figure below:



Wait 5 minutes and use the "MAIL" control command to confirm the message, repeatedly clicking will prompt as follows:



Wait about 10 minutesto obtain the certificate content of the completed certificate chain, as shown in the following figure:



Note: Results obtained through moeclub,The full certificate chain has been supplemented for us。 Compliant SSL certificate path composition: The root certificate, intermediate certificate, and server certificate form an SSL certificate. (The certificate chain can have any link length: CA certificates include root CA certificates, second-level CA certificates (intermediate certificates), and third-level certificates..... (The longer the certificate chain, the slower the loading speed and the worse the trust))

Save the private key of the previous CSR as:micromall.net.keyand then the certificate requested through AlphaSSL is saved as:micromall.net.pemThe file is as shown below:



Access via HTTPS protocol using Nginx

The nginx service is downloaded locally, and some aliases of the domain name are resolved as:127.0.0.1, NGINX and make a simple configuration as follows:

Access through Google Chrome to view, as shown below:



Tutorial Reference:The hyperlink login is visible.

(End)





Previous:IIS 500 error failed request trace
Next:ASP.NET web.config security and performance optimization for MVC
 Landlord| Posted on 3/4/2023 10:30:17 PM |
Popular Science: What is a certificate chain?

The content of the certificate can be summarized into three parts: the user's information, the user's public key, and the signature of the CA center on the information in the certificate. When verifying the validity of the certificate, we will look for the issuer's certificate step by step until the root certificate is over, and then verify the correctness of the digital signature through the public key level 1

The certificate chain can be of any length: CA certificates include root CA certificates, second-level CA certificates (intermediate certificates), and third-level certificates..... (The longer the certificate chain, the slower the loading speed and the worse the trust), the following is an illustration of the certificate chain:





Compliant SSL certificate path composition: The root certificate, intermediate certificate, and server certificate form an SSL certificate. (pictured)



If there are multiple intermediate certificate cross-chains, the SSL certificate file will become larger, the loading speed will be slower, the trust level will decrease, and the error frequency will increase.



This certificate needs to be supplemented with the full certificate chain before it can be trusted. If the certificate provided by the certificate authority cannot be queried in the user's platform's built-in trust base, and there is no authority in the certificate chain, the certificate is proven to be incomplete. If you use an incomplete certificate, when you access the browser corresponding to the protected domain name, you cannot access the browser corresponding to the protected domain name because it is not trusted.




 Landlord| Posted on 4/10/2024 9:23:07 AM |
Latest Tutorials:The hyperlink login is visible.

If you encounter the "Error: This domain has INVALID A record [*.itsvse.com]", you also need itRecord A as 69.175.0.0 (required, you can change it back immediately after successful submission, the main domain name is usually @)

Resolve the MX record toapi.libmk.comWeight 10
 Landlord| Posted on 7/10/2024 4:44:20 PM |
OpenSSL is deployed from visa documents to IIS and SLB
https://www.itsvse.com/thread-10034-1-1.html
 Landlord| Posted on 4/18/2025 10:08:44 AM |
 Landlord| Posted on 4/18/2025 10:17:02 AM |
curl detects information such as the validity period of the https certificate
https://www.itsvse.com/thread-10669-1-1.html
 Landlord| Posted on 4/20/2025 2:56:17 PM |
Xiao Zhazha Posted on 2023-3-4 22:30
Popular Science: What is a certificate chain?

The content of the certificate can be summarized into three parts, the user's information, the user's public key, and the CA Center's ...

Certificate chain completion:https://myssl.com/chain_download.html
Certificate chain query:https://myssl.com/cert_decode.html
 Landlord| Posted on 11/4/2025 6:46:32 PM |
Nginx disables TLSv1.0 and TLSv1.1 invalid solutions
https://www.itsvse.com/thread-10726-1-1.html
Disclaimer:
All software, programming materials or articles published by Code Farmer Network are only for learning and research purposes; The above content shall not be used for commercial or illegal purposes, otherwise, users shall bear all consequences. The information on this site comes from the Internet, and copyright disputes have nothing to do with this site. You must completely delete the above content from your computer within 24 hours of downloading. If you like the program, please support genuine software, purchase registration, and get better genuine services. If there is any infringement, please contact us by email.

Mail To:help@itsvse.com