<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Bitnami Archives - WP Encryption</title>
	<atom:link href="https://wpencryption.com/category/bitnami/feed/" rel="self" type="application/rss+xml" />
	<link></link>
	<description>WordPress SSL Plugin</description>
	<lastBuildDate>Wed, 12 Jan 2022 18:39:27 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>

<image>
	<url>https://wpencryption.com/wp-content/uploads/2020/04/cropped-icon-512-32x32.png</url>
	<title>Bitnami Archives - WP Encryption</title>
	<link></link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Fix Let&#8217;s Encrypt &#8220;R3&#8221; Root Certificate Expired or SSL Not Trusted Issue</title>
		<link>https://wpencryption.com/r3-root-expired-not-trusted/</link>
					<comments>https://wpencryption.com/r3-root-expired-not-trusted/#respond</comments>
		
		<dc:creator><![CDATA[wp_encryption]]></dc:creator>
		<pubDate>Sat, 02 Oct 2021 11:43:19 +0000</pubDate>
				<category><![CDATA[Apache]]></category>
		<category><![CDATA[Bitnami]]></category>
		<category><![CDATA[Nginx]]></category>
		<category><![CDATA[SSL Error]]></category>
		<category><![CDATA[AWS]]></category>
		<category><![CDATA[Digital Ocean]]></category>
		<category><![CDATA[HTTPS]]></category>
		<guid isPermaLink="false">https://wpencryption.com/?p=1035</guid>

					<description><![CDATA[<p>Is your HTTPS site powered by Let's Encrypt SSL certificate showing INSECURE all of a sudden since September 30, 2021?</p>
<p>The post <a href="https://wpencryption.com/r3-root-expired-not-trusted/">Fix Let&#8217;s Encrypt &#8220;R3&#8221; Root Certificate Expired or SSL Not Trusted Issue</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p class="wp-block-paragraph">Is your HTTPS site powered by <a href="https://letsencrypt.org" target="_blank" rel="noreferrer noopener nofollow"><strong>Let&#8217;s Encrypt</strong> </a>(Open certificate authority) SSL certificate showing INSECURE, &#8220;Your connection is not private&#8221;, &#8220;ERR_CERT_AUTHORITY_INVALID&#8221; or similar SSL issue all of a sudden since <strong>September 30, 2021</strong>?. This is due to recent expiration of <strong>DST cross-signed root certificate</strong>. Likewise, you are not alone as huge number of HTTPS sites using Let&#8217;s Encrypt are impacted by this expiration.</p>



<p class="wp-block-paragraph">In our previous post, we explained <strong><a href="https://wpencryption.com/err_cert_authority_invalid/">how to resolve the SSL not trusted / root certificate expired issue for WordPress users and WP Encryption plugin</a></strong> users. Whereas, this guide is focused towards anyone using <strong>Let&#8217;s Encrypt SSL</strong> on their website using Apache, Nginx, Bitnami, Lightsail, Certbot or any server/platform.</p>



<h2 class="wp-block-heading">Fixing root certificate expired issue on shared hosting platforms </h2>



<p class="wp-block-paragraph">If you are using SSL provided by <strong>AutoSSL </strong>or your shared hosting platform, all you need to do is just<strong> re-install</strong> the SSL certificate or <strong>re-run</strong> the autossl to fix the issue, hoping that almost all hosting platforms have updated the root certificate on their platform already. If that doesn&#8217;t resolve your issue, you could manually <strong><a href="https://wordpress.org/plugins/wp-letsencrypt-ssl/" target="_blank" rel="noreferrer noopener">generate new SSL certificate</a></strong> and install it manually on your hosting platform with <strong>new active intermediate certificate (cabundle) </strong>provided at the <strong>bottom of this post</strong>.</p>



<p class="wp-block-paragraph">If you manually generated Let&#8217;s Encrypt SSL certificate using <strong><a href="https://wordpress.org/plugins/wp-letsencrypt-ssl/" target="_blank" rel="noreferrer noopener">WP Encryption WordPress plugin </a></strong>or with any other service which helps generate free Let&#8217;s Encrypt SSL certificate,  simply re-installing the <strong>existing</strong> certificate &amp; private key with the<strong> new intermediate certificate </strong>provided at the bottom of this post would resolve the issue. If you have updated to latest release <strong>v5.7.1 </strong>of WP Encryption plugin, the new intermediate certificate is already updated so you could easily re-generate fresh SSL certificate with correct root / intermediate or you could easily download / copy the new intermediate certificate to use from the &#8220;<strong>Download SSL Certificates</strong>&#8221; page of WP Encryption.</p>



<h2 class="wp-block-heading">Fixing root certificate expired issue on AWS, Digital Ocean, Self managed server</h2>



<p class="wp-block-paragraph">Websites hosted on self managed servers with <strong>Apache</strong>,<strong> Nginx </strong>or <strong>Bitnami</strong> needs to follow a slightly different suit. Please modify your Apache / Nginx <strong>server config file</strong> via SSH console, check for file path of <strong><a href="https://wpencryption.com/install-ssl-for-apache-server/" target="_blank" rel="noreferrer noopener">SSLCACertificateFile</a></strong> in case of Apache (<em>which points to your intermediate certificate file</em>) and<strong> <a href="https://wpencryption.com/install-ssl-for-nginx-server/" target="_blank" rel="noreferrer noopener">ssl_certificate </a></strong>in case of Nginx (<em>which points to a concatenated certificate + intermediate cert file</em>).</p>



<h3 class="wp-block-heading">Apache Server:-</h3>



<p class="wp-block-paragraph">Please update your <strong>intermediate cert file</strong> content with the new intermediate cert provided at the bottom of this article, save the file and restart apache server to fix the HTTPS issue.</p>



<h3 class="wp-block-heading">Nginx Server:-</h3>



<p class="wp-block-paragraph">You will notice <strong>2</strong> cert blocks within your <strong>ssl_certificate</strong> file and you only need to <strong>replace the bottom one </strong>with the new intermediate cert provided at the bottom of this article. Once after updating, please save the server config file and restart nginx server once to fix the HTTPS issue.</p>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph">Finally, the new rise of this SSL issue only requires updating of your <strong>intermediate certificate</strong> and you don&#8217;t really need to worry about your active certificate or key file.</p>



<p class="wp-block-paragraph"></p>



<h2 class="wp-block-heading">Let&#8217;s Encrypt Active Intermediate Certificate to Use:</h2>



<pre class="wp-block-code"><code>-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----</code></pre>
<p>The post <a href="https://wpencryption.com/r3-root-expired-not-trusted/">Fix Let&#8217;s Encrypt &#8220;R3&#8221; Root Certificate Expired or SSL Not Trusted Issue</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://wpencryption.com/r3-root-expired-not-trusted/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Setup CRON Job to Restart Server Monthly Once</title>
		<link>https://wpencryption.com/restart-server-via-cronjob/</link>
		
		<dc:creator><![CDATA[wp_encryption]]></dc:creator>
		<pubDate>Mon, 03 May 2021 09:29:19 +0000</pubDate>
				<category><![CDATA[Apache]]></category>
		<category><![CDATA[Bitnami]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Nginx]]></category>
		<category><![CDATA[OpenLightSpeed]]></category>
		<category><![CDATA[Ubuntu]]></category>
		<guid isPermaLink="false">https://wpencryption.com/?p=839</guid>

					<description><![CDATA[<p>This guide is focused towards step by step instructions on setting up a cron job on server to restart Apache/Nginx/Bitnami monthly once</p>
<p>The post <a href="https://wpencryption.com/restart-server-via-cronjob/">Setup CRON Job to Restart Server Monthly Once</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p class="wp-block-paragraph">This guide is focused towards step by step instructions on setting up a cron job on server to restart Apache/Nginx/Bitnami monthly once so your latest SSL certificate is always loaded up automatically on frontend site without having to manually restart server.</p>



<p class="wp-block-paragraph">First of all, You need to have<strong> root SSH</strong> <strong>access</strong> to your server. Otherwise, this method would not be possible as server restart requires <strong>sudo</strong> privileges and not something possible with your basic / jailed SSH access offered on shared hosting environments.</p>



<p class="wp-block-paragraph">Further steps explained below:</p>



<p class="wp-block-paragraph">1.  Login to your SSH console as <strong>root</strong> user.</p>



<p class="wp-block-paragraph">2.  In case of <strong>Apache</strong> or <strong>Nginx</strong> server, please run the below command to identify your <strong>service</strong> path and make note of the path.</p>



<pre class="wp-block-code"><code>which service</code></pre>



<p class="wp-block-paragraph">It will be something like <strong>/usr/sbin/service</strong></p>



<p class="wp-block-paragraph">3. Run the below command to see which cron jobs you are already running.</p>



<pre class="wp-block-code"><code>crontab -l</code></pre>



<p class="wp-block-paragraph">4. Start editing the crontab with <strong>nano</strong> editor using below command</p>



<pre class="wp-block-code"><code>crontab -e</code></pre>



<p class="wp-block-paragraph">5. Using the service path you have noted, add a new monthly cron job line (runs on date 1 of each month) at the bottom of crontab editor in a new line as below</p>



<pre class="wp-block-code"><code>0 0 1 * * /usr/sbin/service apache2 restart > /monthlycron.log 2>&amp;1</code></pre>



<p class="wp-block-paragraph">If you are using <strong>Nginx</strong> server, the above line should be,</p>



<pre class="wp-block-code"><code>0 0 1 * * /usr/sbin/service nginx restart > /monthlycron.log 2>&amp;1</code></pre>



<p class="wp-block-paragraph">If you are using <strong>Bitnami server / Apache Lightsail</strong>, the above line should be,</p>



<pre class="wp-block-code"><code>0 0 1 * * /opt/bitnami/ctlscript.sh restart apache > /monthlycron.log 2>&amp;1</code></pre>



<p class="wp-block-paragraph"><strong>Note: </strong>Both success &amp; errors are logged in <strong>monthlycron.log</strong> file of root directory which will be helpful for debugging if server restart fails.</p>



<p class="wp-block-paragraph">Press <strong>CTRL + O</strong> to save the crontab &amp; you are all set!. You can run <strong>crontab -l</strong> command to see the saved cron job.</p>



<p class="wp-block-paragraph"><strong>CAUTION:</strong> </p>



<p class="wp-block-paragraph">In rare cases, If there is any error / typo in your server config file or if <strong>certificate.crt</strong>, <strong>private.pem</strong>, <strong>cabundle.crt</strong> files don&#8217;t exists in <strong>keys/</strong> directory of your WordPress directory, your server restart could fail and your site may become inaccessible on <strong>day 1 of month</strong>. In such case, you need to correct any error logged in <strong>monthlycron.log</strong> file, fix missing cert files in <strong>keys/</strong> directory and restart server once manually.</p>
<p>The post <a href="https://wpencryption.com/restart-server-via-cronjob/">Setup CRON Job to Restart Server Monthly Once</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>How to Install SSL for AWS Lightsail Bitnami WordPress</title>
		<link>https://wpencryption.com/ssl-for-lightsail-bitnami-wordpress/</link>
		
		<dc:creator><![CDATA[wp_encryption]]></dc:creator>
		<pubDate>Tue, 25 Aug 2020 11:44:35 +0000</pubDate>
				<category><![CDATA[Apache]]></category>
		<category><![CDATA[Bitnami]]></category>
		<category><![CDATA[DOCS]]></category>
		<category><![CDATA[WordPress]]></category>
		<category><![CDATA[AWS]]></category>
		<category><![CDATA[HTTPS]]></category>
		<category><![CDATA[SSL]]></category>
		<guid isPermaLink="false">https://wpencryption.com/?p=459</guid>

					<description><![CDATA[<p>Generate and install free Let's Encrypt SSL certificate for Bitnami WordPress or AWS Lightsail WordPress within seconds</p>
<p>The post <a href="https://wpencryption.com/ssl-for-lightsail-bitnami-wordpress/">How to Install SSL for AWS Lightsail Bitnami WordPress</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p class="wp-block-paragraph">This tutorial demonstrates how to install <strong><a href="https://letsencrypt.org" target="_blank" rel="nofollow noreferrer noopener">Let&#8217;s Encrypt®</a></strong> (open certificate authority) SSL certificate for your Bitnami WordPress as well as AWS Lightsail WordPress. If you wish to use some premium SSL certificate you have purchased, feel free to upload it to a secure folder on your server and skip to step 2 below.</p>



<p class="wp-block-paragraph"><strong>Technical Requirements:</strong></p>



<ul class="wp-block-list"><li>Bitnami WordPress</li><li>SSH / Command line access with root privileges</li></ul>



<h2 class="wp-block-heading">1. Generate free SSL certificate provided by Let&#8217;s Encrypt<strong>®</strong></h2>



<p class="wp-block-paragraph">To keep this very simple, We will make use of a WordPress plugin &#8220;<a rel="noreferrer noopener nofollow" href="https://wordpress.org/plugins/wp-letsencrypt-ssl/" target="_blank">WP Encryption</a>&#8221; to generate free SSL certificate in one click.</p>



<p class="wp-block-paragraph">All you need to do is just install &amp; activate the plugin on your WordPress Admin, navigate to <strong>WP Encryption</strong> page, enter your email address and click on <strong>Generate SSL Certificate </strong>button.</p>



<figure class="wp-block-image size-full"><img decoding="async" src="https://gowebsmarty.com/wp-content/uploads/2020/04/wp-encryption-page.png" alt="wp encryption ssl" class="wp-image-379"/></figure>



<p class="wp-block-paragraph">This process will request and retrieve free SSL certificate from Let&#8217;s Encrypt authority for your domain. SSL certificates provided by Let&#8217;s Encrypt authority will expire in 90 days and you will need to re-generate new certificates again using the same process before the expiry date. SSL certificates cost you several $$$ a year, You could upgrade to &#8220;<a rel="noreferrer noopener" href="https://gowebsmarty.com/product/wp-encryption-pro/" target="_blank">WP Encryption Pro</a>&#8221; to avail auto renew feature and lifetime SSL mechanism. The required <strong>certificate.crt </strong>and <strong>private.pem</strong> files will be generated and stored in <strong>keys/</strong> folder inside your WordPress directory.</p>



<h2 class="wp-block-heading">2. Configure Bitnami to use SSL certificates by Let&#8217;s Encrypt<strong>®</strong></h2>



<p class="wp-block-paragraph">Assuming you are on a default setup of Bitnami / AWS Lightsail WordPress, You will need to configure the server config file to use SSL certificate and key from correct path. This is an one time process and you don&#8217;t ever need to do it again.</p>



<h3 class="wp-block-heading">Solution 1</h3>



<p class="wp-block-paragraph">Create a symbolic link from existing / current SSL certificate to new SSL certificates generated &amp; stored by WP Encryption plugin. You can do so by connecting via SSH / Command line to your server and run the below SSH commands,</p>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph"><strong>For Latest Bitnami:</strong></p>



<p class="wp-block-paragraph"> If you are using <strong>latest</strong> bitnami instance where your WordPress site files are located in <strong>/opt/bitnami/wordpress/</strong> folder,  </p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache/conf/bitnami/certs

sudo ln -sf /opt/bitnami/wordpress/keys/certificate.crt server.crt

sudo ln -sf /opt/bitnami/wordpress/keys/private.pem server.key

sudo /opt/bitnami/ctlscript.sh restart apache</code></pre>



<p class="wp-block-paragraph"><strong>For Older Bitnami:</strong></p>



<p class="wp-block-paragraph">If you are using <strong>older</strong> bitnami instance where your WordPress site files are located in <strong>/opt/bitnami/apps/wordpress/htdocs/</strong> folder, please use below commands instead of above,</p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache2/conf

sudo ln -sf /opt/bitnami/apps/wordpress/htdocs/keys/certificate.crt server.crt

sudo ln -sf /opt/bitnami/apps/wordpress/htdocs/keys/private.pem server.key

sudo /opt/bitnami/ctlscript.sh restart apache</code></pre>



<p class="wp-block-paragraph">Finally, Open your site with <strong>https://</strong> protocol and check if valid certificate exists as below. If so, you are all set so please skip solution 2.</p>



<figure class="wp-block-image size-medium"><img decoding="async" src="https://gowebsmarty.com/wp-content/uploads/2020/04/letsencrypt-certificate-1-300x284.png" alt="wordpress ssl" class="wp-image-383"/></figure>



<h3 class="wp-block-heading">Solution 2</h3>



<p class="wp-block-paragraph">If the above symlink method fail, We will need to modify WordPress hosts config to use SSL certificates from correct path. Please login via SSH / Command line and follow the below procedure:</p>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph"><strong>Latest Bitnami:</strong></p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache2/conf/vhosts/

sudo nano wordpress-https-vhost.conf</code></pre>



<p class="wp-block-paragraph"><strong>Older Bitnami:</strong></p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apps/wordpress/conf/

sudo nano httpd-vhosts.conf</code></pre>



<p class="wp-block-paragraph">You will find a VirtualHost block similar to below</p>



<pre class="wp-block-code"><code>&lt;VirtualHost *:443>
    ServerName yourserverdomain.com
    ServerAlias *.yourserverdomain.com
    DocumentRoot "/opt/bitnami/apps/wordpress/htdocs"

    SSLEngine on

  <strong>SSLCertificateFile "/opt/bitnami/apps/wordpress/conf/certs/new_server.crt"
  SSLCertificateKeyFile "/opt/bitnami/apps/wordpress/conf/certs/new_server.key"</strong>

    Include "/opt/bitnami/apps/wordpress/conf/httpd-app.conf"
&lt;/VirtualHost></code></pre>



<p class="wp-block-paragraph">All you need to modify here are the <strong>SSLCertificateFile</strong> and <strong>SSLCertificateKeyFile </strong>lines as below</p>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph"><strong>Latest Bitnami:</strong></p>



<pre class="wp-block-code"><code>SSLCertificateFile "/opt/bitnami/wordpress/keys/certificate.crt"

SSLCertificateKeyFile "/opt/bitnami/wordpress/keys/private.pem"</code></pre>



<p class="wp-block-paragraph"><strong>Older Bitnami:</strong></p>



<pre class="wp-block-code"><code>SSLCertificateFile "/opt/bitnami/apps/wordpress/htdocs/keys/certificate.crt"

SSLCertificateKeyFile "/opt/bitnami/apps/wordpress/htdocs/keys/private.pem"</code></pre>



<p class="wp-block-paragraph">After making these changes, press <strong>CTRL + O</strong> to save the changes and <strong>CTRL + X</strong> to exit the file editor. Now We will need to include this httpd-vhosts config file in main config file of Bitnami, please run below commands</p>



<p class="wp-block-paragraph"><strong>NOTE:</strong> Skip to restart command below if you are on<strong> Latest </strong>Bitnami server.</p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache2/conf/bitnami/

sudo nano bitnami-apps-vhosts.conf</code></pre>



<p class="wp-block-paragraph">This will open Bitnami vhosts file editor, at the very bottom of the file add the below line in a new line</p>



<pre class="wp-block-code"><code>Include "/opt/bitnami/apps/wordpress/conf/httpd-vhosts.conf"</code></pre>



<p class="wp-block-paragraph">After making these changes, press <strong>CTRL + O</strong> to save the changes and <strong>CTRL + X</strong> to exit the file editor. Lastly, restart Bitnami for changes to take effect using below command</p>



<pre class="wp-block-code"><code>sudo /opt/bitnami/ctlscript.sh restart</code></pre>



<p class="wp-block-paragraph">Either one of the above two solutions would definitely succeed with the SSL setup for your Bitnami WordPress. Once after you see a valid SSL certificate accessing the <strong>https://</strong> version of your site, please change the <strong>site</strong> &amp; <strong>admin url </strong>to <strong>https://</strong> via <strong>Settings -&gt; General </strong>of <strong>WP-Admin</strong> and also enable &#8220;<strong>Force HTTP</strong>S&#8221; feature of WP Encryption plugin interface if you notice any <strong>mixed content</strong> warning in browser console.</p>



<h2 class="wp-block-heading">3. Resolving Intermediate Cert (CA) issue in Bitnami WordPress</h2>



<p class="wp-block-paragraph">Facebook share debugger and SSLLabs might show your SSL intermediate certificate is missing. Please follow the below commands to resolve the issue:</p>



<p class="wp-block-paragraph"><strong>Latest Bitnami:</strong></p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache2/conf/bitnami
sudo nano bitnami-ssl.conf</code></pre>



<p class="wp-block-paragraph"><strong>Older Bitnami:</strong></p>



<pre class="wp-block-code"><code>cd /opt/bitnami/apache2/conf/bitnami
sudo nano bitnami.conf</code></pre>



<p class="wp-block-paragraph">Add below line just after <strong>SSLCertificateKeyFile</strong> line</p>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph"><strong>Latest Bitnami:</strong></p>



<pre class="wp-block-code"><code>SSLCACertificateFile "/opt/bitnami/wordpress/keys/cabundle.crt"</code></pre>



<p class="wp-block-paragraph"><strong>Older Bitnami:</strong></p>



<pre class="wp-block-code"><code>SSLCACertificateFile "/opt/bitnami/apps/wordpress/htdocs/keys/cabundle.crt"</code></pre>



<p class="wp-block-paragraph">After making these changes, press <strong>CTRL + O</strong> to save the changes and <strong>CTRL + X</strong> to exit the file editor. Lastly, restart Bitnami Apache for changes to take effect using below command</p>



<pre class="wp-block-code"><code>sudo /opt/bitnami/ctlscript.sh restart apache</code></pre>
<p>The post <a href="https://wpencryption.com/ssl-for-lightsail-bitnami-wordpress/">How to Install SSL for AWS Lightsail Bitnami WordPress</a> appeared first on <a href="https://wpencryption.com">WP Encryption</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
