company logo

Help center

Got to WP Umbrella
All collectionsMonitoring & SecurityResolving SSL Issues in WordPress: A Step-By-Step Guide

Resolving SSL Issues in WordPress: A Step-By-Step Guide

Learn how to troubleshoot and fix common SSL issues in WordPress, including expired certificates and mixed content, using WP Umbrella's monitoring tools.

Overview

If you’ve seen a "Your website has SSL issues" warning in WP Umbrella or WordPress Site Health, it's a sign that something is not right with your SSL setup—and it's critical to fix it fast to keep your website secure. 🔐

WP Umbrella's security monitoring feature helps you stay on top of SSL issues like expired certificates or mixed content (HTTP/HTTPS conflicts). This guide will walk you through identifying and resolving these problems to ensure your site stays secure and trusted by visitors.

Estimated Time to Complete: 5–10 minutes

Prerequisites:

Access to WordPress Admin area

Basic understanding of SSL certificates

(Optional) Access to an SSL checker tool like SSLShopper

info icon
Understanding How SSL Monitoring Works in WP Umbrella 🔍

WP Umbrella monitors your SSL certificate status by checking:
- If the SSL certificate is valid and not expired.
- If your site is serving mixed URLs (both HTTP and HTTPS links).


👉 If you see an SSL issue warning, it usually means:
- Your SSL certificate has expired or is invalid.
- Your site has mixed content (HTTP and HTTPS URLs).

Steps to Follow 🚀

Step 1: Check Your SSL Certificate

First, confirm whether your SSL certificate is valid, expired, or missing (though most sites today have SSL installed).

✅ Quick checks:

  • Open your website and check for the padlock icon (🔒) in the browser bar.

  • Click Connection is secure to see more details about your SSL certificate, including its validity.

🔧 Optional tool:

  • Use SSLShopper's SSL Checker:

  • Enter your domain name to see details like the issuer and expiration date.

⚠ If the SSL certificate is missing or expired:

  • Contact your hosting provider to install or renew your SSL certificate.

  • If your SSL is valid but you’re still getting a warning, mixed URLs are likely the culprit—read on to fix them!

Step 2: Fix Mixed URLs

Mixed URLs happen when parts of your site (like images or scripts) load over HTTP instead of HTTPS, causing security warnings.

✅ First, check WordPress settings:

  • Go to WordPress Admin > Settings > General.

  • Check these two fields:

    • WordPress Address (URL)

    • Site Address (URL)

Make sure both URLs use HTTPS, like this:

⚙ Note: Both fields must be updated to use HTTPS to avoid mixed content issues.

⚙ Example of incorrect setup (causing issues):

Step 3: If "HTTPS" Is Already Set But Issues Persist

If everything is set to HTTPS, but you're still seeing warnings, it may be due to old HTTP links in your database.

  • Go to Tools > Site Health in WordPress to check for any remaining SSL-related issues.

  • You can also use plugins like Better Search Replace to update old HTTP URLs in your database to HTTPS.

Common Issues & Troubleshooting 🔧

❓ My SSL certificate is valid, but WP Umbrella still shows a warning. What now?

WP Umbrella scans every 6 hours, so if you’ve just fixed the issue, it might take time to reflect.

❓ How do I fix mixed content?

First, update your WordPress and Site URLs to HTTPS. Check for and replace hard-coded HTTP links in posts, theme files, or the database if issues persist.

❓ Where do I get an SSL certificate?

Most hosting providers (like SiteGround, Bluehost, and Kinsta) offer free SSL certificates via Let's Encrypt.

❓ Can mixed content affect my SEO or user trust?

Yes! Browsers may mark your site as Not Secure, which can drive users away and hurt your SEO rankings.

❓ What tool can help me scan for mixed content?

Use online tools like Why No Padlock or SSL Labs to identify mixed content issues.

Final Thoughts 🎉

If you’ve addressed the SSL issues but WP Umbrella still shows a warning, it might be waiting for its next scheduled scan, feel free to contact WP Umbrella support—we’re always here to help you fix it! 💬

Keeping your SSL certificates up-to-date and fixing mixed content ensures a secure, trustworthy, and SEO-friendly site—great job staying proactive! 👏

Did this answer your question?
😞
😐
😁