Ubuntu Server 18.04 ; Obtain an SSL certificate (Let’s Encrypt).

Obtaining a certificate with Let’s Encrypt

①Enable mod_ssl

# a2enmod ssl

②Install Git.

# apt-get install -y git

③Install the certificate acquisition tool

# cd /usr/local/

# git clone

Certbot” is now installed under /usr/local/certbot.
④Install the certificate

# certbot certonly –webroot -w /var/www/html/<document root> -d <Domain Name>

# First time only, you need to register your email address and agree to the terms of use.

# Specify an email address that can be received.

Enter email address (used for urgent notices and lost key recovery)

 <Email address>

 <  OK  >           <Cancel>

 # I agree to the terms of use

Please read the Terms of Service at

     You must agree in order to register with the ACME server at                      

 <Agree >           <Cancel>


 – Congratulations! Your certificate and chain have been saved at

   /etc/letsencrypt/live/<Domain Name>/fullchain.pem. Your cert will

   expire on 2018-07-27. To obtain a new version of the certificate in

   the future, simply run Let’s Encrypt again.

 – If you like Let’s Encrypt, please consider supporting our work by:


   Donating to ISRG / Let’s Encrypt:

   Donating to EFF:          

# If it says Congratulations, you’ve succeeded.
# The certificate is obtained under [/etc/letsencrypt/live/ <domain name>/] as described in the message.

# cert.pem ⇒ SSL Server Certificate(Public key included)
# chain.pem ⇒ intermediate certificate
# fullchain.pem ⇒ A file containing the concatenation of cert.pem and chain.pem
# privkey.pem ⇒ Private key to public key