---
title: "How to enable free SSL in cPanel"
description: "How to issue your RedHosting hosting's free SSL certificate in cPanel, force the site to open over HTTPS and fix the mixed content warning that keeps the padlock broken."
url: "https://redhosting.com.br/en/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel"
type: "article"
language: "en"
category: "cPanel"
published: "2026-09-02"
translations:
  pt-BR: "https://redhosting.com.br/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel.md"
  en: "https://redhosting.com.br/en/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel.md"
  es: "https://redhosting.com.br/es/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel.md"
  de: "https://redhosting.com.br/de/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel.md"
---

# How to enable free SSL in cPanel

How to issue your RedHosting hosting's free SSL certificate in cPanel, force the site to open over HTTPS and fix the mixed content warning that keeps the padlock broken.

- RedHosting knowledge base guide — category: cPanel
- HTML page: https://redhosting.com.br/en/base-de-conhecimento/como-ativar-o-ssl-gratuito-no-cpanel
- Published on: 2026-09-02 · Language: en

The SSL certificate is what makes the browser show the padlock and the address start with `https://`. Without it, Chrome marks the site as "Not secure" right next to the address — and Google uses HTTPS as a ranking signal. At RedHosting the certificate is free on every hosting plan.

## 1. Most of the time it's already active

The hosting issues the certificate on its own, through AutoSSL, as soon as the domain starts pointing to the server. Before anything else, check:

- Log in to cPanel and, under **Security**, click **SSL/TLS Status**.
- The list shows each domain and subdomain on the account. A green padlock means the certificate is issued and valid.

If everything is green, skip to step 3.

## 2. Issuing the certificate manually

If any domain shows up without a certificate:

- On the same **SSL/TLS Status** screen, check the box for the missing domains.
- Click **Run AutoSSL**.
- Wait a few minutes and reload the page.

  ⚠️**If AutoSSL fails**: The reason is almost always the same: the domain doesn't point to the hosting yet. The certificate authority needs to reach your site on the server to prove the domain is yours. Finish pointing the domain first and run it again.

## 3. Forcing the site to open over HTTPS

An issued certificate doesn't redirect by itself: the site keeps opening over `http://` for anyone who types it that way. cPanel fixes this with one toggle:

- Under **Domains**, click **Domains**.
- Turn on the **Force HTTPS Redirect** toggle for the domain.

If you'd rather do it in `.htaccess`, at the top of the file in `public_html`:

```
RewriteEngine On
RewriteCond %{HTTPS} off
RewriteRule ^(.*)$ https://%{HTTP_HOST}%{REQUEST_URI} [L,R=301]
```

  💡**Tip**: Use the cPanel toggle **or** the .htaccess rule, never both. Together they create a redirect loop and the browser complains it "redirected you too many times".

## 4. When the padlock stays broken

The certificate is valid, but the browser shows the padlock with a warning. That's **mixed content**: the page opened over HTTPS and is loading some image, CSS or script over HTTP.

To find the culprit, open the page, press **F12** and check the **Console** tab — the browser lists every insecure resource.

On a WordPress site, the fix is usually:

- Under **Settings** → **General**, change the **WordPress Address** and **Site Address** to `https://`.
- Run a search-and-replace plugin swapping `http://yourdomain` for `https://yourdomain` in the database. Old addresses stay stored in posts and don't change by themselves.

On a hand-built site, search for `http://` in the HTML and CSS and replace it with a relative path — `/images/photo.png` instead of the full address.

## 5. Renewal

AutoSSL renews on its own before expiry, with nothing for you to do. Renewal only fails if the domain stops pointing to the hosting — in that case cPanel warns you by email.

## 6. After SSL

- Update the site address in Google Search Console to the `https://` version.
- Check internal links and the sitemap, which may still use `http://`.
- If you have email on the domain, the certificate also covers `mail.yourdomain.com` — it's worth reconfiguring your phone to use SSL/TLS.

## Need help?

Open a ticket at [financeiro.redhosting.com.br](https://financeiro.redhosting.com.br) or contact support on WhatsApp at **+55 11 98833-3902**.

## Frequently asked questions

**Is RedHosting's SSL paid?**

No. The certificate is free on every hosting plan and issued automatically by AutoSSL.

**AutoSSL failed. What should I do?**

The reason is almost always that the domain doesn't point to the hosting yet: the certificate authority needs to reach the site on the server to prove the domain is yours. Finish pointing it and run AutoSSL again.

**The certificate is valid but the padlock is still broken. Why?**

It's mixed content: the page opened over HTTPS and loads some image, CSS or script over HTTP. Press F12 and check the Console tab, which lists every insecure resource.

**Do I need to renew the certificate every year?**

No. AutoSSL renews on its own before expiry. Renewal only fails if the domain stops pointing to the hosting, and in that case cPanel warns you by email.

**The site says it redirected too many times after I enabled HTTPS.**

You probably enabled the redirect with the cPanel toggle and also with an .htaccess rule. Use one of them, never both.

## Navigation — cPanel (article 4 of 6)

- Previous article: [How to upload your website with the cPanel File Manager](https://redhosting.com.br/en/base-de-conhecimento/como-enviar-seu-site-pelo-gerenciador-de-arquivos-do-cpanel.md) — https://redhosting.com.br/en/base-de-conhecimento/como-enviar-seu-site-pelo-gerenciador-de-arquivos-do-cpanel
- Next article: [How to create a MySQL database in cPanel](https://redhosting.com.br/en/base-de-conhecimento/como-criar-um-banco-de-dados-mysql-no-cpanel.md) — https://redhosting.com.br/en/base-de-conhecimento/como-criar-um-banco-de-dados-mysql-no-cpanel
- Back to the knowledge base: https://redhosting.com.br/en/base-de-conhecimento

---

Need help with these steps? RedHosting's 24/7 support: suporte@redhosting.com.br · WhatsApp +55 11 98833-3902 · https://redhosting.com.br/discord

More guides: https://redhosting.com.br/en/base-de-conhecimento.md
