Skip to content

Generate website SSL certificates

Use the Enhance main control panel server with a valid cPFence license and a Super admin API key. WebUI users need access to the selected websites and permission for this action.

Ensure the hostname and DNS records are ready before requesting a certificate. Review authorization failures and correct them before selecting a retry set.

  1. Open Tools & Utilities → ApiMachine Bulk Tools.
  2. Choose Cluster scope or Select servers, apply your filters, then check the intended website rows. Review the selection rules; filtering alone does not select websites.
  3. Open Choose action → SSL & HTTPS → Generate website SSL.

SSL and HTTPS action menu showing Generate website SSL.

Choose Generate website SSL for the selected websites after checking their hostname and DNS readiness. Select the image to enlarge it; use your browser's Back command to return.
  1. Review the selected websites and Confirm and run. Read Finished or Needs attention and the per-target output.

Inspect the resulting certificate and HTTPS response. A submitted request is not proof that issuance completed.

Use root on the main control panel server. Generate and edit the CLI site list first so that /var/log/cpfenceav/cluster-sites-list.txt contains only your intended targets.

Terminal window
cpfence --bulk-generate-ssl-cluster

Read the target list and confirm the action when prompted.

For failures, read each target’s error and check its actual state before retrying. Keep the retry selection limited to the intended websites.