# Https - noddy's guide required

**URL:** <https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648>\
**Category:** RapidWeaver Classic\
**Created:** [February 14, 2018, 4:45pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648 "2018-02-14T16:45:07Z")\
**Posts on this page:** 10\
**Page:** 2

<div class="post-metadata">

**Author:** ![bruce](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/bruce/32/23155_2.png) [@bruce](https://forums.realmacsoftware.com/u/bruce)\
**Post date:** [February 16, 2018, 1:00pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/22 "2018-02-16T13:00:18Z")

</div>

@teefers  
Doug,  
Thanks. I will contact the Theme developers. I do agree that they should fix these errors.

---

<div class="post-metadata">

**Author:** ![bruce](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/bruce/32/23155_2.png) [@bruce](https://forums.realmacsoftware.com/u/bruce)\
**Post date:** [February 16, 2018, 1:03pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/23 "2018-02-16T13:03:38Z")

</div>

> [@jchou](#):
>
> The only remaining warning is the one you posted elsewhere about: “You currently have TLSv1 enabled.”, which someone responded that we can’t do anything about, I guess.

@jchou  
The info about this is here:

> **[You currently have TLSv1 enabled?](https://forums.realmacsoftware.com/t/you-currently-have-tlsv1-enabled/18662)**
>
> I added SSL to my site, and when checking on https://www.whynopadlock.com/, one of the results says “You currently have TLSv1 enabled. This version of TLS is being phased out. This warning won’t break your padlock, however if you run an eCommerce...

---

<div class="post-metadata">

**Author:** ![kpryce1](https://avatars.discourse-cdn.com/v4/letter/k/9d8465/32.png) [@kpryce1](https://forums.realmacsoftware.com/u/kpryce1)\
**Post date:** [February 16, 2018, 3:55pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/24 "2018-02-16T15:55:15Z")

</div>

@jabostick Thanks for this guide to remove “not secure” - I took it at snail’s pace and I seem to have got there. If I query my site I get the nice green https. Are there any other checks I can do as, of course Chrome has not yet changed to “not secure”

---

<div class="post-metadata">

**Author:** ![kpryce1](https://avatars.discourse-cdn.com/v4/letter/k/9d8465/32.png) [@kpryce1](https://forums.realmacsoftware.com/u/kpryce1)\
**Post date:** [February 16, 2018, 4:09pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/25 "2018-02-16T16:09:30Z")

</div>

@jabostick Ah, I see I have given you false credit and it was actually ben’s guide. As per @bruce I did a check on his padlock recommendation. The results said “Force HTTPS - Your webserver is forcing the use of SSL.”; " Valid CertificateYour SSL Certificate is installed correctly, with nice green tick". “Domain Matching”. So I guess I’ve succeeded without paying and “arm & leg” to Goddady.  
@ben My check on padlock says the SSL expires in 90 days - do you know if this is a quick one-click to renew in Cloudflare?

---

<div class="post-metadata">

**Author:** ![bruce](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/bruce/32/23155_2.png) [@bruce](https://forums.realmacsoftware.com/u/bruce)\
**Post date:** [February 16, 2018, 6:32pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/26 "2018-02-16T18:32:43Z")

</div>

I wrote to the two theme developers regarding the mixed content errors I was getting with their themes. Both of them promptly issued theme updates which solved the errors. Thanks to both of them!

---

<div class="post-metadata">

**Author:** ![ben](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/ben/32/28488_2.png) [@ben](https://forums.realmacsoftware.com/u/ben)\
**Post date:** [February 19, 2018, 8:06am UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/27 "2018-02-19T08:06:47Z")

</div>

> [@kpryce1](#):
>
> My check on padlock says the SSL expires in 90 days - do you know if this is a quick one-click to renew in Cloudflare?

if you’re using CloudFlare then they will automatically renew the certificate for you — you don’t need to do anything 🙂

---

<div class="post-metadata">

**Author:** ![svsmailus](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/svsmailus/32/18768_2.png) [@svsmailus](https://forums.realmacsoftware.com/u/svsmailus)\
**Post date:** [February 19, 2018, 2:03pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/28 "2018-02-19T14:03:05Z")

</div>

Pardon my ignorance, but I had assumed https was only needed for websites that people logged into. If your site only displays information (which many do), why is https necessary? Will browsers make this distinction?

---

<div class="post-metadata">

**Author:** ![teefers](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/teefers/32/8173_2.png) [@teefers](https://forums.realmacsoftware.com/u/teefers)\
**Post date:** [February 19, 2018, 2:13pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/29 "2018-02-19T14:13:28Z")

</div>

Not true. Big big push the last few years to secure the entire internet. Most search engines have been reducing your SERP ranking for not using SSL for a while now. Back in September Chrome, the most popular browsers started warning users any site that had any input field at all (even a simple mailing list signup) that the site was not secure.  
Now in July, every non-HTTPS site will get that warning.

> [@Effective July 2018, Google’s Chrome browser will mark non-HTTPS sites as ‘not secure’](http://forums.realmacsoftware.com/t/effective-july-2018-google-s-chrome-browser-will-mark-non-https-sites-as-not-secure/18597):
>
> If you’re not using SSL on your site(s) yet you’re running out of time. It looks like with the release of chrome 68 scheduled for July release sites accessed as HTTP, not HTTPS will be marked as not secure right in the address bar. Now you get that message only if you’re accepting users input. This message will affect your bounce rate.

---

<div class="post-metadata">

**Author:** ![kpryce1](https://avatars.discourse-cdn.com/v4/letter/k/9d8465/32.png) [@kpryce1](https://forums.realmacsoftware.com/u/kpryce1)\
**Post date:** [February 19, 2018, 3:57pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/30 "2018-02-19T15:57:19Z")

</div>

@ben Thanks for that ben, I can now rest easy. Got to say though that this problem is going to cause a lot of RW users, heartache. Whilst I followed ‘mostly’ what your video outlined there were some slight deviations (in the process) with my Goddady sites. I intuitively knew what to do and got the desired result nevertheless. Don’t think we’ve heard the real howls of anguish yet.

---

<div class="post-metadata">

**Author:** ![system](https://dub1.discourse-cdn.com/flex005/user_avatar/forums.realmacsoftware.com/system/32/25301_2.png) [@system](https://forums.realmacsoftware.com/u/system)\
**Post date:** [February 25, 2018, 3:57pm UTC](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648/31 "2018-02-25T15:57:28Z")

</div>

This topic was automatically closed 6 days after the last reply. New replies are no longer allowed.

[Previous page](https://forums.realmacsoftware.com/t/https-noddys-guide-required/18648.md?page=1)
