Task
SSL certificate renewal — done by EOD
An SSL certificate renewal service means handing off the certificate, the DNS or origin server access, and getting confirmation that HTTPS is restored — often within hours. 1daytasks handles SSL renewals across Cloudflare, Let's Encrypt, AWS Certificate Manager, and commercial CAs (DigiCert, Sectigo, GlobalSign) under a flat monthly subscription from $997/month. Tasks submitted by 11am ship same business day; we automate renewal where possible to prevent the next expiry surprise.
What to include when you submit
Domain(s) needing renewal, current SSL provider (or 'I don't know — find it'), and whichever access you can grant: DNS provider login, hosting panel, or IAM role for cloud-managed certificates.
If your cert has already expired and your site is down, mark the task as Rush — we'll bump it to front of queue.
Renewal paths we handle
Cloudflare Universal SSL: typically auto-renews; we verify and handle edge cases (CAA records, custom hostnames). Let's Encrypt via Certbot, acme.sh, or platform-managed (Caddy, Traefik): we automate renewal and run a manual renewal if the cron has stalled.
AWS ACM: we issue, validate (DNS or email), and attach to ALB/CloudFront. Commercial CAs (DigiCert, Sectigo, GlobalSign): we generate CSR, submit, validate, and install on origin server or load balancer.
Preventing the next expiry surprise
After renewal, we set up automated monitoring — typically a free uptime probe with SSL expiry alerts 30/14/7 days out, plus a calendar reminder. For self-managed certs, we'll automate renewal where the platform supports it.
Most clients renew once with us, then add monitoring as the next task. Both fit comfortably in the same subscription cycle.
Frequently asked
How fast can you renew an SSL certificate?+
If submitted by 11am with access provisioned, same business day. Domain validation steps (DNS or email) can add propagation delays, but we kick those off immediately.
What if my certificate has already expired?+
Mark the task Rush — we'll prioritize. Most expired-cert recoveries take 1–3 hours from grant of access.
Do you handle wildcard or multi-domain (SAN) certificates?+
Yes — both wildcard (*.example.com) and multi-SAN. Wildcards usually require DNS-01 validation, which we'll automate where possible.
Do you set up auto-renewal?+
Yes, where the platform supports it. For Let's Encrypt-based stacks, we configure cron or systemd timers. For AWS ACM, we use DNS validation so renewals are automatic.
Your backlog isn't going to fix itself.
Pick a 15-minute slot. We'll review your backlog, identify which tasks we can start tomorrow, and match you to the right plan. No decks. No pressure.
Onboarding fee waived for calls booked this week.