Get a free website with any plan

See how
CPANEL

Installing an SSL certificate you bought elsewhere

Last updated

IN SHORT

You can install a third-party SSL certificate on Flashcloud by opening cPanel, navigating to Security > SSL/TLS Certificates, and selecting your domain. Paste your certificate, private key, and CA bundle into their matching fields. You must include the full begin and end lines for each text block for the installation to succeed.

Go to cPanel > Security > SSL/TLS Certificates, choose the domain, and paste your certificate, private key, and any CA bundle into the matching fields.

Most people buying a certificate elsewhere are doing it for a reason: extended validation, a wildcard from a specific CA, or a company policy that requires a paid cert. If you don't have one of those reasons, it's worth knowing that Flashcloud auto-issues and auto-renews a free Let's Encrypt SSL for hosted domains, usually within about 5 minutes of DNS pointing at us. That one requires no manual steps.

What you need before you start

A third-party SSL install has three parts, and you need all three in hand:

  • The certificate (CRT), issued by your certificate authority for your exact domain.
  • The private key, generated when you created the certificate signing request (CSR). If you generated the CSR outside cPanel, make sure you kept this file. Without it, the certificate is useless and you'll need to reissue.
  • The CA bundle (intermediate certificates), which chains your certificate back to a root that browsers trust. Most CAs provide this as a separate file or make it available for download from their portal.

Copy each one as plain text, including the -----BEGIN CERTIFICATE----- and -----END CERTIFICATE----- lines. Partial pastes are a common cause of a failed install.

Installing it in cPanel

  1. Log in to the portal, open the hosting service, and launch cPanel via the one-click login.
  2. Go to Security > SSL/TLS Certificates.
  3. Use the install or manage option on that page for the domain.
  4. Select the domain from the dropdown. If your domain isn't listed, contact support to confirm it's set up on the account.
  5. Paste the certificate into the Certificate (CRT) field.
  6. Paste the private key into the Private Key (KEY) field.
  7. Paste the CA bundle into the Certificate Authority Bundle (CABUNDLE) field.
  8. Click Install Certificate.

If you're running cPanel's Meridian theme

If your account has switched to the newer Meridian theme, the path is different: go to Websites & Apps, select the site, open the SSL tab, and use the manual install option there instead of hunting for the classic SSL/TLS Certificates tool.

Common install errors

Certificate not valid, or a domain mismatch

This means the certificate was issued for a different domain or subdomain than the one you selected, most often a www vs. bare-domain mismatch, or a single-domain cert being applied to a subdomain it doesn't cover. Check the exact domain names listed on the certificate against what you're installing it on.

Private key doesn't match the certificate

You're pasting a key that wasn't generated for this certificate, usually because the CSR was regenerated at some point and the key changed. If you don't have the correct matching key anymore, you'll generally need your CA to reissue the certificate against a new CSR.

Certificate installs but browsers still show a warning

This is almost always a missing or incomplete CA bundle. Go back into SSL/TLS Certificates, re-check that the CABUNDLE field has the full chain your CA provided, and reinstall. A missing intermediate certificate lets the site load over HTTPS but breaks trust validation on some devices and browsers even though others tolerate it.

After installing

Confirm the padlock shows correctly by loading your site in a private/incognito window, which avoids cached certificate warnings from before the install. If you also manage DNS through us, note that DNS records live in the DNS Zone Editor under your hosting service, separate from the SSL tool, and don't need any changes for an SSL install to take effect.

When to contact support

If the CA's validation process is stuck, if you've lost the private key and your CA won't reissue without extra verification, or if the certificate installs cleanly but the site still won't load over HTTPS, open a ticket from the portal (Support) or use live chat. A real person can check server-side configuration that isn't visible from the SSL/TLS Certificates screen.

Common questions

Do I have to buy an SSL certificate for my website?

No. Flashcloud automatically issues and renews a free Let's Encrypt SSL certificate for hosted domains within about 5 minutes of pointing your DNS to us. You only need to purchase one if you require extended validation, specific wildcards, or compliance with company policy.

Why does my browser still show a warning after installing my certificate?

Your CA bundle is likely missing or incomplete. Return to SSL/TLS Certificates in cPanel, paste the full chain provided by your provider into the CABUNDLE field, and reinstall. Also test the site in a private window to rule out cached browser warnings.

What should I do if I lost my private key?

You must ask your certificate provider to reissue the certificate against a new CSR. The certificate is useless without the specific private key created alongside it.

Where do I find the SSL settings in the Meridian theme?

Go to Websites & Apps, select your site, and open the SSL tab. Use the manual install option there instead of looking for the classic SSL/TLS Certificates menu.

CAN'T FIND IT?

Real humans answer fast.

Hosting with us? Open a ticket and a real person replies - no scripts, no upsells. Still choosing a host? The same team is included with every plan, from day one.