{"id":763,"date":"2025-12-23T07:17:39","date_gmt":"2025-12-23T06:17:39","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=763"},"modified":"2026-02-26T11:03:44","modified_gmt":"2026-02-26T10:03:44","slug":"lets-encrypt-and-sni","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/","title":{"rendered":"SSL certificates on mybox \u2014 Let&#8217;s Encrypt"},"content":{"rendered":"\n<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\"><em>Let&#8217;s Encrypt<\/em> is a free, automated SSL certificate service operated by the <em>Internet Security Research Group<\/em> (<em>ISRG<\/em>). It enables websites to serve traffic over <em>HTTPS<\/em> without requiring a paid certificate.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On mybox, <em>Let&#8217;s Encrypt<\/em> certificates are issued and renewed automatically. No manual setup is required.<\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/#How_automatic_issuance_works\" >How automatic issuance works<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/#Why_a_certificate_might_not_appear_yet\" >Why a certificate might not appear yet<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/#Cloudflare_compatibility\" >Cloudflare compatibility<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/#Managing_SSL_settings_in_the_panel\" >Managing SSL settings in the panel<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/lets-encrypt-and-sni\/#About_Lets_Encrypt_certificates\" >About Let&#8217;s Encrypt certificates<\/a><\/li><\/ul><\/li><\/ul><\/nav><\/div>\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"How_automatic_issuance_works\"><\/span><strong>How automatic issuance works<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<\/div>\n\n<div id=\"mybox-3988511511\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Early access<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Still need help?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contact our customer service team.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Message us<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">A certificate is generated for every domain correctly delegated to mybox nameservers:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>ns1.mybox.com<\/li>\n\n\n\n<li>ns2.mybox.com<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Once a domain is delegated and parked in the <a href=\"https:\/\/panel.mybox.com\">mybox panel<\/a>, the system detects it automatically and issues a certificate within a few minutes.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_a_certificate_might_not_appear_yet\"><\/span><strong>Why a certificate might not appear yet<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The most common reason is <strong>DNS propagation<\/strong>. After updating nameservers, it can take up to <strong>24 hours<\/strong> for changes to propagate fully. The certificate cannot be issued until the domain resolves correctly to mybox servers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If generation fails for any reason, the system retries automatically. The error message displayed in the panel includes information about when the next attempt will be made.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u2192<a href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/why-hasnt-a-lets-encrypt-certificate-been-generated-for-my-domain\/\"> Why hasn&#8217;t a Let&#8217;s Encrypt certificate been generated for my domain?<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Cloudflare_compatibility\"><\/span><strong>Cloudflare compatibility<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Let&#8217;s Encrypt<\/em> certificates issued by mybox are not compatible with <strong>Cloudflare proxy mode<\/strong>. If your domain is proxied through Cloudflare, the certificate cannot be generated or validated correctly. Contact <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\">Helpdesk 24<\/a> if you need guidance on your specific setup.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Managing_SSL_settings_in_the_panel\"><\/span><strong>Managing SSL settings in the panel<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">SSL certificates for each domain can be managed in the <a href=\"https:\/\/panel.mybox.com\">mybox panel<\/a> under <strong>Websites \u2192 SSL Certificate \u2192 Change SSL settings<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The available options are:<\/p>\n\n\n\n<\/div>\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Option<\/strong><\/td><td><strong>What it does<\/strong><\/td><\/tr><tr><td><strong>Disabled<\/strong><\/td><td>Disables HTTPS encryption for the domain<\/td><\/tr><tr><td><strong>Let&#8217;s Encrypt<\/strong><\/td><td>Enables or re-enables the free certificate<\/td><\/tr><tr><td><strong>Order a certificate<\/strong><\/td><td>Places an order for a <a href=\"https:\/\/mybox.com\/\">paid SSL certificate<\/a><\/td><\/tr><tr><td><strong>Use an existing certificate<\/strong><\/td><td>Activates a previously installed certificate<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">A correctly generated certificate in the mybox panel should look like this:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"756\" height=\"315\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2025\/12\/image-378.png\" alt=\"\" class=\"wp-image-5512\" srcset=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2025\/12\/image-378.png 756w, https:\/\/mybox.com\/help\/wp-content\/uploads\/2025\/12\/image-378-300x125.png 300w, https:\/\/mybox.com\/help\/wp-content\/uploads\/2025\/12\/image-378-18x8.png 18w\" sizes=\"auto, (max-width: 756px) 100vw, 756px\" \/><\/figure>\n\n<div class=\"translation-block translation-block-merged\">\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"About_Lets_Encrypt_certificates\"><\/span><strong>About Let&#8217;s Encrypt certificates<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Let&#8217;s Encrypt<\/em> certificates are fully trusted by all major browsers and operating systems. They are renewed automatically before expiry \u2014 no manual action is needed.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">They do not include an <strong>issuer guarantee<\/strong> (also called a warranty). This is standard for domain-validated (<em>DV<\/em>) certificates. If your use case requires an organization-validated (<em>OV<\/em>) or extended-validation (<em>EV<\/em>) certificate with an issuer guarantee, a paid certificate is available through the panel.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>A note on SNI<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">mybox uses <em>SNI<\/em> (<em>Server Name Indication<\/em>) \u2014 a technology that allows multiple SSL certificates to be active on a single IP address. This is what makes it possible to issue free certificates to all hosted domains without requiring a dedicated IP for each one.<\/p>\n\n\n\n<div class=\"wp-block-onethird-callout-box onethird-callout-wrap\"><div class=\"onethird-callout onethird-callout--hint\" style=\"--ot-bg:#EAFFF7;--ot-border:#C8E8D8;--ot-text:#6F7C88;--ot-title:#384048;--ot-body:#6F7C88;--ot-icon:#384048;border-radius:6px;padding:16px\"><div class=\"onethird-callout__head\"><span class=\"onethird-callout__icon\"><svg viewBox=\"0 0 24 24\" width=\"18\" height=\"18\" aria-hidden=\"true\" focusable=\"false\"><circle fill=\"none\" stroke=\"#384048\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" cx=\"12\" cy=\"12\" r=\"9\"><\/circle><path fill=\"none\" stroke=\"#384048\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" d=\"M12 10v6\"><\/path><path fill=\"none\" stroke=\"#384048\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" d=\"M12 7h.01\"><\/path><\/svg><\/span><div class=\"onethird-callout__title\">Early Access<\/div><\/div><div class=\"onethird-callout__body\"><em>Let&#8217;s Encrypt<\/em> certificates are active in early access and issued automatically for all correctly delegated domains. Paid SSL certificates will be introduced in the future release<\/div><\/div><div class=\"onethird-callout__separator\" style=\"height:18px\" aria-hidden=\"true\"><\/div><\/div>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[11,25],"manual_kb_tag":[669,1543,767,1736,772,1744,886,1749,887,1820,888,2220,890,2221,170,912,2222,175,913,2241,203,914,2242,242,936,2243,283,1014,2244,353,1088,2245,371,1204,2246,372,1247,2247,588,1480],"class_list":["post-763","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-ssl-certificates","manualknowledgebasecat-hosting","manual_kb_tag-nameservers","manual_kb_tag-https","manual_kb_tag-web-server","manual_kb_tag-protocols","manual_kb_tag-domain","manual_kb_tag-server-name-indication","manual_kb_tag-free-ssl-certificates","manual_kb_tag-encryption","manual_kb_tag-ssl-certificates","manual_kb_tag-tls","manual_kb_tag-https-encryption","manual_kb_tag-free-certificate","manual_kb_tag-internet-security-research-group","manual_kb_tag-automatic-renewal","manual_kb_tag-dns-propagation","manual_kb_tag-tls-protocol","manual_kb_tag-cloudflare-compatibility","manual_kb_tag-nameserver-delegation","manual_kb_tag-https-protocol","manual_kb_tag-lets-encrypt-certificates","manual_kb_tag-dns-zone","manual_kb_tag-website-security","manual_kb_tag-automatic-certificate-renewal","manual_kb_tag-mybox","manual_kb_tag-cloudflare","manual_kb_tag-automated-certificates","manual_kb_tag-mybox-panel","manual_kb_tag-mybox-com","manual_kb_tag-certificate-management","manual_kb_tag-domain-delegation","manual_kb_tag-ip-address","manual_kb_tag-hosting-company","manual_kb_tag-lets-encrypt","manual_kb_tag-certificate-installation","manual_kb_tag-issuer-guarantee","manual_kb_tag-ssl-certificate","manual_kb_tag-tls-certificate","manual_kb_tag-managed-certificates","manual_kb_tag-website","manual_kb_tag-ip-addresses"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/763","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":7,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/763\/revisions"}],"predecessor-version":[{"id":4186,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/763\/revisions\/4186"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/media?parent=763"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manualknowledgebasecat?post=763"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb_tag?post=763"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}