# How to install SSL certificate for RASA X?

**URL:** <https://forum.rasa.com/t/how-to-install-ssl-certificate-for-rasa-x/31674>\
**Category:** \[Deprecated\] Rasa X Community Edition\
**Created:** [July 22, 2020, 4:11pm UTC](https://forum.rasa.com/t/how-to-install-ssl-certificate-for-rasa-x/31674 "2020-07-22T16:11:07Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![razaito](https://avatars.discourse-cdn.com/v4/letter/r/54ee81/32.png) [@razaito](https://forum.rasa.com/u/razaito)\
**Post date:** [July 22, 2020, 4:11pm UTC](https://forum.rasa.com/t/how-to-install-ssl-certificate-for-rasa-x/31674/1 "2020-07-22T16:11:07Z")

</div>

Hi there

I need to install a SSL certificate for my rasa bot which has a domain like that: [chat.test.org](http://chat.test.org) I use docker to install it and it works right away but only with Http.

I try to use this article as a guide to setup the SSL.

> **[The Rasa Masterclass Handbook: Episode 11](https://rasa.com/blog/the-rasa-masterclass-handbook-episode-11/)**
>
> In this episode, we’ll make the assistant available to real users on two publicly accessible messaging channels: Telegram and a website chat widget.

First, I need to disable UFW as otherwise the lets encrypt part cant access my vps.

But after all steps are done and after several reboots and docker compose ups, the browser now displays “Failed to open page”

However, docker seems to work fine and the ping to my domain also works.

Do you have any guidance on how to setup the SSL certificate as of mid 2020?

---

<div class="post-metadata">

**Author:** ![ricwo](https://avatars.discourse-cdn.com/v4/letter/r/7ea924/32.png) [@ricwo](https://forum.rasa.com/u/ricwo)\
**Post date:** [August 3, 2020, 4:54pm UTC](https://forum.rasa.com/t/how-to-install-ssl-certificate-for-rasa-x/31674/2 "2020-08-03T16:54:28Z")

</div>

Hi @razaito, welcome to the forum!

Did you successfully install a certificate using certbot? Could you please verify that everything was installed correctly by running `sudo certbot certificates`?

---

<div class="post-metadata">

**Author:** ![razaito](https://avatars.discourse-cdn.com/v4/letter/r/54ee81/32.png) [@razaito](https://forum.rasa.com/u/razaito)\
**Post date:** [August 10, 2020, 2:30pm UTC](https://forum.rasa.com/t/how-to-install-ssl-certificate-for-rasa-x/31674/3 "2020-08-10T14:30:16Z")

</div>

> <https://github.com/RasaHQ/rasa/issues/5689>
>
> I'd like to suggest two changes to "\[Docker-Compose Manual Install: Securing wit…h SSL\](https://rasa.com/docs/rasa-x/installation-and-setup/docker-compose-manual/#securing-with-ssl)".
> 
> 1. Port 80 must be available or \`sudo certbot certonly\` will not work. Therefore, before that step, instruct user to turn off Rasa, i.e. \`sudo docker-compose down\`
> 2. After copying \`privkey.pem\` to \`/etc/rasa/certs\`, instruct user to grant read privileges to group, i.e. \`sudo chmod 640 certs/privkey.pem\`. This is discussed on the \[forum\](https://forum.rasa.com/t/rasa-x-in-http-rasa-in-https/23607/8).

After copying privkey.pem to /etc/rasa/certs, instruct user to grant read privileges to group, i.e. sudo chmod 640 certs/privkey.pem. This is discussed on the forum.

this was missing. something which should be put in the documentation instead of being buried deep down github.
