Skip to main content
Closed for Voting

"Bring Your Own" SSL

Related products:Freshdesk
  • January 6, 2015
  • 87 replies
  • 153 views

 When activating the custom SSL option (Estate plan), the certificate that is generated is a Digicert crt with many AltNames.

As it happens, ours is not the primary.
While this avoids the alerts in the browsers, a warning icon is still displayed next to the URL in the address bar.
Also, looking at the certificate's details shows another Freshdesk's client portal URL.

This makes the portal look a less professional.
We actually have a wildcard cert for our domain that we could use.
We would just need a way to deploy it to your ELB.

87 replies

  • Contributor
  • January 6, 2015

I had this same issue, so following to see if there's additional information.


  • Contributor
  • June 25, 2015

Yes this should be implemented. Bring our own certificate, even at a cost.


  • Contributor
  • February 12, 2016

Any news about this? This is really important


  • Community Debut
  • February 18, 2016

This is REALLY important and we would like to see an answer to this as well.


  • Community Debut
  • May 10, 2016

Even better, how about just implementing Let's Encrypt, like many hosting companies do?


SSL should not be a (ridiculously expensive) addon or for only the high-end pricing plans - this should be something you *want* *all* your customers to adopt. Not only is it a security risk that the (often sensitive) data *you* are sending to your customers might be compromised (and *you* will get blamed for it), but it's also an SEO issue for customers using a public kb/forum.


That FD doesn't already have this is seriously concerning.


  • Community Debut
  • May 11, 2016

For more information: https://letsencrypt.org


Integration of traditional SSL certificates to your website can be rather costly, whereas free certificates do not guarantee utmost protection. Let’s Encrypt SSL solves this by giving you a trusted certificate that fulfills all your HTTPS requirements absolutely free. Don’t worry about your SSL certificate’s expiry because Let’s Encrypt executes automated certificate renewals. Your certificates won’t ever go invalid and save you the hassle of reissuing, renewing and re-configuring of SSL certificates on your domains.


Let’s Encrypt SSL gives you domain-validated security certificates which are certified by the open certificate authority (CA). It makes encryption easy for your specific domains and, resultingly, web browsing is more stable and secure. Cloudways proudly supports Let’s Encrypt as a security certificate provider for your website. Here are a few advantages of using Let’s Encrypt certificates:


Free of cost

Easy to integrate

Minimized validation email hassles

No dedicated IP required

Trusted by almost all major browsers in the world

Auto-renewable


  • Contributor
  • May 11, 2016
@Mattyou are spot on. Offer Lets Encrypt as the base option and BYO as the premium option. Encouraging (via financial dis-incentive) the submission of PII form data in clear text is a huge liability to Freshdesk. The first hack lands them a subpoena (and I will leave the concerns about un-scanned file attachments in shared repositories out of the discussion for now...)


  • Community Debut
  • June 2, 2016

I would be happy with ' bring your own cert' It's very strange that customers need to purchase certificates twice (one for their own webserver and one for FD) It should be possible to install a cert on FD's Amazon instances.


  • Community Debut
  • June 3, 2016

We're in the process of evaluating FreshDesk as one of a number of options. This is the one area where FD falls behind and is critical to our acceptance. Please FD, provide this to everyone and you'll win our business.


  • Community Debut
  • January 19, 2017

With the increased security that most modern browsers are now requiring, this is a pretty significant gap in the FreshDesk offering.  Some of your competitors DO offer a free SSL cert with their service.  The response and details in your help forums and documentation is lagging here. 


  • Contributor
  • June 21, 2017

I think most businesses will have their own wildcard certificate (*.domainname) - so it seems somewhat backward that we have to apply

for a _shared_ Digicert certificate. With those customers on Garden or below having to pay every year for it.


Freshdesk need to allow import of those (already owned) certs - in much the same way that Zendesk does.


  • Contributor
  • June 21, 2017

We want this as well.


  • Community Debut
  • May 4, 2018
It would be great for this feature to be implemented as we would like to bring our own certificates to the platform.

 


aravind.sundararajan
Skilled Expert
Forum|alt.badge.img+12

Hello,


We're actively considering adding this in our roadmap plans for the year. Will keep you posted on any further developments.


Cheers!


  • Community Debut
  • May 31, 2018

The use of a free certificate should be possible with respect to GDPR laws. You need to provide a well-secured application which includes one that allows SSL encryption without additional costs. Please update as soon as possible. Thanks.


  • Community Debut
  • July 25, 2018

I'm on board for the wildcard method please.


  • Community Debut
  • September 7, 2018

Agreed, do we have any further update on this feature?


  • Community Debut
  • September 11, 2018

We benefited from a free certificate with our first portal, but now we have extended and added a second portal we are being asked to purchase a certificate as wildcards not accepted. I also support the use of wildcards being allowed. Please can you provide an update as to when this will be the case?




  • Community Debut
  • November 9, 2018

I don't know how to "subscribe" to a discussion; hopefully this does it.


In a world of GDPR, letsencrypt, etc., this is a "must have". letsencrypt would be fantastic, but please at least let us bring our own certificate instead of paying $180 for Freshdesk's cert.


  • Community Debut
  • November 15, 2018

Would like this feature too, needs to be implemented ASAP


  • Community Debut
  • December 27, 2018

Please give us an update, this is an essential and important feature.


  • Community Debut
  • January 7, 2019

I too would like an update. I'm using Freshdesk in a data protection context so it's even more important! But $180 is prohibitively expensive anywhere, let alone for an otherwise competitive product like Freshdesk. I recently assisted a client to implement Letsencrypt certs for hundreds of domains, it's even easier to automate than regular (paid) certs. 8 months ago you said you were considering this for your 2018 roadmap. I come back to work after New Year's to Bootstrap 2 style skeuomorphic buttons straight out of the beginning of the decade, but no word on vital encryption.


aravind.sundararajan
Skilled Expert
Forum|alt.badge.img+12

Hello,


This is very much in our plans but unfortunately, I don't have any timelines to share yet. Implementing this requires an arch level change and that's one of the reasons why its taking bit longer than expected. We're zeroing in on the best way possible (Let's encrypt is one among them) and I'll share an update as soon as the team starts working on this one.


Cheers!


  • Community Debut
  • January 16, 2019

Aravind, any updates on the progress so far? We have been dinged for the multi-host certificates that are currently in place with Freshdesk's SSL offering.


  • Community Debut
  • February 1, 2019

Hi Aravind,


This is a great solution from Intercom that allows someone to use an existing certificate via AWS (Cloudfront). Will this work with Freshdesk as well? If so, please provide the Origin Domain Name needed to use with Cloudfront. That would rock!


https://www.youtube.com/watch?v=qKOGu0li070


Thanks!

Jamie