# SSL Cert only $$$

**URL:** <https://community.letsencrypt.org/t/ssl-cert-only/87643>\
**Category:** Help\
**Created:** [March 3, 2019, 9:13am UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643 "2019-03-03T09:13:39Z")\
**Posts on this page:** 10\
**Page:** 1

<div class="post-metadata">

**Author:** ![KrisAU](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/krisau/32/29920_2.png) [@KrisAU](https://community.letsencrypt.org/u/KrisAU)\
**Post date:** [March 3, 2019, 9:13am UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/1 "2019-03-03T09:13:39Z")

</div>

Hi All

I had a chat with a domain provider who told me that LE certs would be marked down or potentially not accepted by google which would hurt traffic to my site.

I am setting up a small business website and believe I must setup SSL on the site.

Is this true or is this a sales technique just to sell SSL certs?

Your feedback would be great

Thank you

---

<div class="post-metadata">

**Author:** ![JuergenAuer](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/juergenauer/32/26491_2.png) [@JuergenAuer](https://community.letsencrypt.org/u/JuergenAuer)\
**Post date:** [March 3, 2019, 9:26am UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/2 "2019-03-03T09:26:31Z")

</div>

Hi @KrisAU

> [@KrisAU](#):
>
> I had a chat with a domain provider who told me that LE certs would be marked down or potentially not accepted by google which would hurt traffic to my site.

that's wrong (friendly spoken, not friendly spoken - oh, I don't want to write that 😉 ).

Google prefers https, only a valide certificate is required.

And since Letsencrypt startet, there are much more sites secure.

But the conclusion: Making money with certificates is dead. OV- and EV-certificates will follow, because browsers (upps, Chrome from Google) reduce the place to show these informations.

> **[Extended Validation Certificates are Dead](https://www.troyhunt.com/extended-validation-certificates-are-dead/)**
>
> That's it - I'm calling it - extended validation certificates are dead. Sure,
> you can still buy them (and there are companies out there that would just love 
> to sell them to you!), but their usefulness has now descended from "barely
> there" to "as...

---

<div class="post-metadata">

**Author:** ![Osiris](https://avatars.discourse-cdn.com/v4/letter/o/839c29/32.png) [@Osiris](https://community.letsencrypt.org/u/Osiris)\
**Post date:** [March 3, 2019, 9:34am UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/3 "2019-03-03T09:34:38Z")

</div>

> [@KrisAU](#):
>
> Is this true or is this a sales technique just to sell SSL certs?

They just want to steal your money. There's no truth to their statements.

---

<div class="post-metadata">

**Author:** ![KrisAU](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/krisau/32/29920_2.png) [@KrisAU](https://community.letsencrypt.org/u/KrisAU)\
**Post date:** [March 3, 2019, 9:58am UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/4 "2019-03-03T09:58:37Z")

</div>

Thank you gents, I figured this was the case.

I assume this is a good site to start with to protect my site with a LE cert? I have a website made using Word Press

> **[How to Add Free SSL in WordPress with Let's Encrypt](https://www.wpbeginner.com/wp-tutorials/how-to-add-free-ssl-in-wordpress-with-lets-encrypt/)**
>
> Do you want to add a free SSL certificate to your WordPress site? Learn how to easily add free SSL in WordPress with Let's Encrypt.

---

<div class="post-metadata">

**Author:** ![rg305](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/rg305/32/91314_2.png) [@rg305](https://community.letsencrypt.org/u/rg305)\
**Post date:** [March 3, 2019, 4:20pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/5 "2019-03-03T16:20:45Z")

</div>

> [@KrisAU](#):
>
> I had a chat with a domain provider who told me...

You need to speak to a "better" one...  
[that one isn't looking out for YOUR interests]

---

<div class="post-metadata">

**Author:** ![KrisAU](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/krisau/32/29920_2.png) [@KrisAU](https://community.letsencrypt.org/u/KrisAU)\
**Post date:** [March 3, 2019, 7:36pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/6 "2019-03-03T19:36:00Z")

</div>

Well seems like they lock you in

GoDaddy doesnt support LE, which means manual every 90 days. Not really an option ☹

---

<div class="post-metadata">

**Author:** ![schoen](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/schoen/32/79_2.png) [@schoen](https://community.letsencrypt.org/u/schoen)\
**Post date:** [March 3, 2019, 7:58pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/7 "2019-03-03T19:58:22Z")

</div>

I agree that there’s no good reason to believe the domain provider here. On the other hand, Google’s ranking algorithms are secret and involve many different factors. It’s not impossible that Google could, for example, estimate the _cost_ of the hosting infrastructure that particular sites are using, and rank more expensive sites higher than cheaper sites (or more plausibly, rank things that more professional or sophisticated sites usually do higher).

Anti-spam systems sometimes do something like this, and Google is surely more sophisticated than they are.

Google hasn’t made any statement about this, and so the domain provider’s claim is probably speculative (and spurious). What we’ve heard from Google is that sites with HTTPS will be ranked higher than sites with only HTTP, and Google didn’t indicate that the certificate authority mattered in this ranking.

Since Google is always adjusting its secret ranking algorithms, it may not be a good idea in the long term to believe someone who has a financial incentive in selling you something that’s supposedly good for SEO. (They may not know whether what they say is true, and can’t guarantee it will remain true!) But that doesn’t mean that the claim is impossible.

Edit: I should emphasize that although search engines might theoretically decide to consider more-expensively-hosted sites more authoritative, **I don’t have any evidence that Google is currently doing this and I don’t think that certificate resellers or hosters have any evidence either.**

---

<div class="post-metadata">

**Author:** ![\_az](https://avatars.discourse-cdn.com/v4/letter/_/22d042/32.png) [@\_az](https://community.letsencrypt.org/u/_az)\
**Post date:** [March 3, 2019, 8:01pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/8 "2019-03-03T20:01:32Z")

</div>

Google use Let’s Encrypt for their own Firebase hosting service - it would be ludicrous for them to behave in the way suggested. That’s on top of being platinum sponsors of Let’s Encrypt.

---

<div class="post-metadata">

**Author:** ![schoen](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/schoen/32/79_2.png) [@schoen](https://community.letsencrypt.org/u/schoen)\
**Post date:** [March 3, 2019, 8:10pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/9 "2019-03-03T20:10:07Z")

</div>

> [@\_az](#):
>
> Google use Let’s Encrypt for their own Firebase hosting service - it would be ludicrous for them to behave in the way suggested. That’s on top of being platinum sponsors of Let’s Encrypt.

It's true that Google is _very_ supportive of Let's Encrypt in many ways, and it's definitely not as though they think it's a bad thing. However, I'm sure that their search ranking team has quite a lot of autonomy in defining what kinds of signals are used and how they count for ranking purposes, and I don't think it's impossible that they could effectively decide that more expensive infrastructure is a positive signal in some circumstances.

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/letsencrypt/original/3X/c/a/ca6c06ea1ea201324bba7048c6841ce60236468d.png) [@system](https://community.letsencrypt.org/u/system)\
**Post date:** [April 2, 2019, 8:10pm UTC](https://community.letsencrypt.org/t/ssl-cert-only/87643/10 "2019-04-02T20:10:10Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
