SSL now enabled

I have been trying to figure out how to implement SSL with websites hosted on Amazon S3 for a few weeks now. Finally, I think I figured it out. Well the first challenge was getting Cloudfront to work with my S3 bucket. What was causing it to fail is selecting the wrong Origin Domain Name when creating a new distribution. When you click on the text box, Amazon lists recognized S3 buckets. Do not pick from the list. Instead, copy and paste the endpoint URL found in the properties of the bucket.

Once I started to see data when I generated reports in Cloudfront, I knew I did it right this time. The next step is get the SSL certificate in Amazon IAM. Once you upload it, it will be available in the dropdown list in Cloudfront to be selected. It’s a long and tedious process with some trial and error, but I think it’s worth it to increase browsing security for the website.

A couple of things that I’m still working on are:

  • Ensure Disqus comments are not broken. If you are having issues, please let me know.
  • Some assets from insecure websites may not display – such as images, styling, and javascript. I’ve ran a few test and aside from little things, it doesn’t affect the accessibility of the website. I will continue to find alternatives and solutions.

Why implement SSL?

  1. The main reason why we implemented it is to allow a secure connection from your browser to our website. There are many companies out there secretly injecting tracking scripts to its customers/users. Why? Well, to make money off you, of course. I’m hoping to reduce the effectiveness of such practices. http://arstechnica.com/security/2014/10/verizon-wireless-injects-identifiers-link-its-users-to-web-requests/
  2. Google plans to increase search result ranking for websites using HTTPS. http://arstechnica.com/security/2014/08/in-major-shift-google-boosts-search-rankings-of-https-protected-sites/
  3. I was curious about how it works and its implementation so I decided to do it on our own website.

Similar Posts

  • Welcome to 2017

    We know we haven’t blogged in a while. I have decided to bring back my old domain and start blogging there – blog.sherwinm.com. All tech related posts will be there. I have decided to keep the old posts here. That’s one of the reasons I, myself, haven’t posted anything. Abby and I also opened up…

  • 22 Week Ultrasound

    Last Wednesday we went in for a check up with our fetal geniticist and had another another ultrasound. The technician didn’t seem as friendly as the last. She wouldn’t allow me to take any video during. So I just scanned some of the print outs. The machine doesn’t seem as good as the last session…

  • Ill Defense Son!

    Look what wifey hooked me up with… ildefonso01.jpg ildefonso03.jpg Danny Ildefonso from San Miguel Beermen jersey. I can’t believe she found a size to fit me haha. The jersey is fresh. I just like rocking things you can’t get here or are hard to get. I just got one problem… ildefonso02.jpg …which shoe am I…

Leave a Reply

Your email address will not be published. Required fields are marked *