{"id":865,"date":"2023-06-20T00:34:33","date_gmt":"2023-06-19T23:34:33","guid":{"rendered":"https:\/\/vanmarion.nl\/blog\/?p=865"},"modified":"2023-06-20T00:34:33","modified_gmt":"2023-06-19T23:34:33","slug":"letsencrypt-ssl-for-wowza-frontend-backend","status":"publish","type":"post","link":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/","title":{"rendered":"LetsEncrypt SSL for Wowza frontend &#038; Backend"},"content":{"rendered":"<p>This tutorial is part 4 of the series and will probably the most popular one. I will guide you throught installation and configuration on how to install and enable a Letsencrypt SSL certificate on your Wowza server for version 4.8.23&nbsp;<\/p>\n<h2>Part 4<\/h2>\n<p>Although Wowza now supports Streamlock for free, letsencrypt is still highly wanted by the community. Just like my previous post, this setup has to be configured manually. As long as you follow the tutorial it shouldn&#8217;t be much of a problem.&nbsp;<\/p>\n<p>Our Goal:<\/p>\n<ul>\n<li>Succesfully enable and configure Letsencrypt<\/li>\n<li>Convert our certificate with the letsencrypt converter from <a href=\"https:\/\/github.com\/robymus\/wowza-letsencrypt-converter\" target=\"_blank\" rel=\"noopener\">Github Robymus<\/a><\/li>\n<li>Run the Streamingenginemanager over SSL on port 8090<\/li>\n<li>Run the StreamingEngine playback over SSL on port 443<\/li>\n<\/ul>\n<h3>Requirements<\/h3>\n<ul>\n<li>Ubuntu Server with Wowza 4.8.23+2 installed.&nbsp;<\/li>\n<li>Open TCP ports 80, 443 and 8090 (TCP\/IN) in your firewall. We need them to be able to request and validate the SSL certificate.<\/li>\n<li>A valid DNS name that points to your wowza server.&nbsp;<\/li>\n<\/ul>\n<p>In case you used the installer from <a href=\"https:\/\/vanmarion.nl\/blog\/blog\/wowza-streaming-engine-4-8-232-java-openjdk-17\/\" target=\"_blank\" rel=\"noopener\">part 1<\/a> or <a title=\"part 1.1\" href=\"https:\/\/vanmarion.nl\/blog\/blog\/wowza-streaming-engine-4-8-232-java-openjdk-11-0-19\/\" target=\"_blank\" rel=\"noopener\">part 1.1<\/a> of the turorial series,&nbsp; SSL is already pre-configured in the Firewall.&nbsp;<\/p>\n<h3>Important<\/h3>\n<p>In the next steps i will create the SSL on wowza.vanmarion.nl. Make sure you change this url to your setup.&nbsp;<\/p>\n<h3>Step 1 &#8211; install Snap and certbot<\/h3>\n<p>just follow these commands and run as sudo<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\"># install snap\r\nsudo apt install snapd -y\r\nsudo systemctl enable --now snapd.socket\r\nsudo ln -s \/var\/lib\/snapd\/snap \/snap\r\n\r\n# remove certbot-auto and Certbot packages\r\nsudo apt remove certbot\r\n\r\n# install certbot\r\nsudo snap install --classic certbot\r\n\r\n# cereate a symlink\r\nsudo ln -s \/snap\/bin\/certbot \/usr\/bin\/certbot<\/pre>\n<h3>Step 2 &#8211; request the SSL certificate<\/h3>\n<p>We now will request an SSL certificate for our domainname.<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">sudo certbot certonly --standalone -d wowza.vanmarion.nl --key-type rsa<\/pre>\n<p>Set an emailadress where letsencrypt can send mails to and let you know if the certificate needs renewal.&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">#Saving debug log to \/var\/log\/letsencrypt\/letsencrypt.log\r\n#Enter email address (used for urgent renewal and security notices)\r\n# (Enter 'c' to cancel): &lt;set-email-address&gt;\r\n<\/pre>\n<p>Answer the next questions with yes and no<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n#Please read the Terms of Service at\r\n#https:\/\/letsencrypt.org\/documents\/LE-SA-v1.3-September-21-2022.pdf. You must\r\n#agree in order to register with the ACME server. Do you agree?\r\n#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n#(Y)es\/(N)o: y\r\n\r\n#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n#Would you be willing, once your first certificate is successfully issued, to\r\n#share your email address with the Electronic Frontier Foundation, a founding\r\n#partner of the Let's Encrypt project and the non-profit organization that\r\n#develops Certbot? We'd like to send you email about our work encrypting the web,\r\n#EFF news, campaigns, and ways to support digital freedom.\r\n#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n#(Y)es\/(N)o: n\r\n\r\n<\/pre>\n<p>The certificate now gets created. You should see something like this:<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">#Account registered.\r\n#Requesting a certificate for wowza.vanmarion.nl\r\n\r\n#Successfully received certificate.\r\n#Certificate is saved at: \/etc\/letsencrypt\/live\/wowza.vanmarion.nl\/fullchain.pem\r\n#Key is saved at:         \/etc\/letsencrypt\/live\/wowza.vanmarion.nl\/privkey.pem\r\n#This certificate expires on 2023-09-17.\r\n#These files will be updated when the certificate renews.\r\n#Certbot has set up a scheduled task to automatically renew this certificate in the background.\r\n\r\n#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n#If you like Certbot, please consider supporting our work by:\r\n# * Donating to ISRG \/ Let's Encrypt:   https:\/\/letsencrypt.org\/donate\r\n# * Donating to EFF:                    https:\/\/eff.org\/donate-le\r\n#- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -\r\n<\/pre>\n<p>Well done. You have succesfully created the Letsencrypt certificate. Now we will convert the certificate to a JKS format which we need in the next steps<\/p>\n<h3>Step 3 &#8211; Letsencrypt converter<\/h3>\n<p>Follow the next series of commands&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">#- Convert the SSL certificate so we can use it in Wowza. Letsencrypt converter (creation JKS file). \r\n#- Credits to Robymus: https:\/\/github.com\/robymus\r\n\r\ncd \/usr\/local\/WowzaStreamingEngine\/lib \r\nsudo wget https:\/\/github.com\/robymus\/wowza-letsencrypt-converter\/releases\/download\/v0.2\/wowza-letsencrypt-converter-0.2.jar\r\nsudo java -jar wowza-letsencrypt-converter-0.2.jar -v \/usr\/local\/WowzaStreamingEngine\/conf\/ \/etc\/letsencrypt\/live\/\r\n\r\n# 2 files should have been created. a .jks and a .txt file. Read the txt file and copy the contents in a temporary notepad\r\n<\/pre>\n<p>Now when read the created jks txt file we see this:<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">cat \/usr\/local\/WowzaStreamingEngine\/conf\/jksmap.txt\r\n\r\n#example output: \r\nSUB.DOMAIN.EXT={\"keyStorePath\":\"\/usr\/local\/WowzaStreamingEngine\/conf\/wowza.vanmarion.nl.jks\", \"keyStorePassword\":\"secret\", \"keyStoreType\":\"JKS\"}<\/pre>\n<p>Copy this line in a notepad or editor of your choice. We will need this information in the next steps.&nbsp;<\/p>\n<h3>Step 4 &#8211; Enable SSL module in VHost.xml<\/h3>\n<p>We will enable 443 Module by removing the &lt;!&#8211; and &#8211;&gt; tags around the &lt;HostPort&gt; tag<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">sudo vi \/usr\/local\/WowzaStreamingEngine\/conf\/VHost.xml<\/pre>\n<p>See the image below for the desired setup.&nbsp;<\/p>\n<p>1 and 2: Remove the &lt;!&#8211; and &#8211;&gt; tags<\/p>\n<p>3 and 4. Only Change only the keyStorePath and keyStorePassword to the ones from the jks file (see step 3). The rest doesn&#8217;t have to be changed<\/p>\n<p><a href=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl.jpg\" data-rel=\"lightbox-gallery-Kn4FngBD\" data-rl_title=\"\" data-rl_caption=\"\" title=\"\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-873\" src=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl-300x176.jpg\" alt=\"\" width=\"300\" height=\"176\" srcset=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl-300x176.jpg 300w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl-1024x602.jpg 1024w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl-768x451.jpg 768w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/VHost-ssl.jpg 1164w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>Original:&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">&lt;SSLConfig&gt;\r\n    &lt;KeyStorePath&gt;${com.wowza.wms.context.VHostConfigHome}\/conf\/keystore.jks&lt;\/KeyStorePath&gt;\r\n    &lt;KeyStorePassword&gt;[password]&lt;\/KeyStorePassword&gt;\r\n    &lt;KeyStoreType&gt;JKS&lt;\/KeyStoreType&gt;\r\n    &lt;DomainToKeyStoreMapPath&gt;&lt;\/DomainToKeyStoreMapPath&gt;\r\n    &lt;SSLProtocol&gt;TLS&lt;\/SSLProtocol&gt;\r\n    &lt;Algorithm&gt;SunX509&lt;\/Algorithm&gt;\r\n    &lt;CipherSuites&gt;&lt;\/CipherSuites&gt;\r\n    &lt;Protocols&gt;&lt;\/Protocols&gt;\r\n&lt;\/SSLConfig&gt;<\/pre>\n<p>to:&nbsp;<\/p>\n<p>** make sure to change wowza.vanmarion.nl to your domainname<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">&lt;SSLConfig&gt;\r\n    &lt;KeyStorePath&gt;${com.wowza.wms.context.VHostConfigHome}\/conf\/wowza.vanmarion.nl.jks&lt;\/KeyStorePath&gt;\r\n    &lt;KeyStorePassword&gt;secret&lt;\/KeyStorePassword&gt;\r\n    &lt;KeyStoreType&gt;JKS&lt;\/KeyStoreType&gt;\r\n    &lt;DomainToKeyStoreMapPath&gt;&lt;\/DomainToKeyStoreMapPath&gt;\r\n    &lt;SSLProtocol&gt;TLS&lt;\/SSLProtocol&gt;\r\n    &lt;Algorithm&gt;SunX509&lt;\/Algorithm&gt;\r\n    &lt;CipherSuites&gt;&lt;\/CipherSuites&gt;\r\n    &lt;Protocols&gt;&lt;\/Protocols&gt;\r\n    &lt;AllowHttp2&gt;false&lt;\/AllowHttp2&gt;\r\n&lt;\/SSLConfig&gt;<\/pre>\n<p>Note: if you want to see line numbers when you have opened your file just hit&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">:set number<\/pre>\n<p>Now save the file.<\/p>\n<h3>Step 5 &#8211; Edit tomcat properties<\/h3>\n<p>In order to run the Enginemanager on port 8090 change this file and uncomment the first 3 lines<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">sudo vi \/usr\/local\/WowzaStreamingEngine\/manager\/conf\/tomcat.properties<\/pre>\n<p>Result:<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">httpsPort=8090\r\nhttpsKeyStore=\/usr\/local\/WowzaStreamingEngine\/conf\/wowza.vanmarion.nl.jks\r\nhttpsKeyStorePassword=secret\r\n#httpsKeyAlias=[key-alias]<\/pre>\n<h3>Step 6 &#8211; Edit startmgr<\/h3>\n<p>The second step is a bit more tricky. We will disable the http port and only allow https port 8090. Open the file startmgr.sh<\/p>\n<p>We will change the second CMD command. Make sure the quotes are at the beginning and end of the line, otherwiser you enginemanager will not start. If you copy the line and replace it, you should be fine.&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">sudo vi \/usr\/local\/WowzaStreamingEngine\/manager\/bin\/startmgr.sh\r\n:set number\r\n\r\n# Change this \r\nCMD=\"$_EXECJAVA -cp $CLASSPATH $JAVA_SYSTEM_PROPERTIES launch.Main --prefix=\/enginemanager --defaultWebApp=\/enginemanager --tempDirectory=$WMSMGR_HOME\/temp  --webroot=$WMSMGR_HOME\/temp --warfile=$WMSMGR_HOME\/lib\/WMSManager.war --httpPort=8088 --config=$WMSMGR_HOME\/conf\/tomcat.properties --ajp13Port=-1 --directoryListings=false\"\r\n\r\n#with this:\r\nCMD=\"$_EXECJAVA -cp $CLASSPATH $JAVA_SYSTEM_PROPERTIES launch.Main --prefix=\/enginemanager --defaultWebApp=\/enginemanager --tempDirectory=$WMSMGR_HOME\/temp  --webroot=$WMSMGR_HOME\/temp --warfile=$WMSMGR_HOME\/lib\/WMSManager.war --httport=-1 --httpsPort=8090 --httpsKeyStore=\"\/usr\/local\/WowzaStreamingEngine\/conf\/wowza.vanmarion.nl.jks\" --httpsKeyStorePassword=\"secret\" --config=$WMSMGR_HOME\/conf\/tomcat.properties --ajp13Port=-1 --directoryListings=false\"<\/pre>\n<p>Example:<\/p>\n<p><a href=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD.jpg\" data-rel=\"lightbox-gallery-Kn4FngBD\" data-rl_title=\"\" data-rl_caption=\"\" title=\"\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-874\" src=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD-300x46.jpg\" alt=\"\" width=\"300\" height=\"46\" srcset=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD-300x46.jpg 300w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD-1024x156.jpg 1024w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD-768x117.jpg 768w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD-1536x234.jpg 1536w, https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/startmgr-changeCMD.jpg 1683w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>Configuration is now done for SSL.&nbsp;<\/p>\n<p><strong>Step 7 &#8211; Restart wozwa services.&nbsp;<\/strong><\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">sudo service WowzaStreamingEngineManager restart\r\nsudo service WowzaStreamingEngine restart<\/pre>\n<p>Now open a browser and login on the Enginemanager over SSL<\/p>\n<p>https:\/\/wowza.vanmarion.nl:8090\/enginemanager<\/p>\n<p>Your playback stream for example will be like https:\/\/wowza.vanmarion.nl:443\/live\/streamkey\/playlist.m3u8<\/p>\n<h3>Step 8 &#8211; Firewall ports<\/h3>\n<p>Port 8088 is no longer needed and you can delete this from the CSF config if you want. Feel free to do that. Open the firewall config by editing the file \/etc\/csf\/csf.conf<\/p>\n<p>and change line 139 and remove port 8088.&nbsp;<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">TCP_IN = \"22,53,80,443,554,1935,8084:8088,8090\"\r\n\r\nto\r\nTCP_IN = \"22,53,80,443,554,1935,8090\"<\/pre>\n<p>More information about the ports can be found here:&nbsp;<a href=\"https:\/\/github.com\/nlmaca\/Wowza_Installers\" target=\"_blank\" rel=\"noopener\">Github nlmaca<\/a><\/p>\n<p>Then restart CSF by the following commands<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\"># disable CSF\r\ncsf -x\r\n\r\n# enable CSF\r\ncsf -e\r\n\r\n# restart CSF\r\ncsf -r<\/pre>\n<p>&nbsp;<\/p>\n<p>In the next tutorial i will explain how to use VideoJS as a free webplayer.&nbsp;<\/p>\n<h3>Questions:&nbsp;<\/h3>\n<p>If you have any questions or have issues please be specific in which step you run into problems.&nbsp;<\/p>\n<h3>Tutorial series<\/h3>\n<p>If you want to checkout the other tutorials feel free to read&nbsp;<a href=\"https:\/\/vanmarion.nl\/blog\/blog\/updates-wowza-streaming-engine-tutorials\/\" target=\"_blank\" rel=\"noopener\">https:\/\/vanmarion.nl\/blog\/blog\/updates-wowza-streaming-engine-tutorials\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This tutorial is part 4 of the series and will probably the most popular one. I will guide you throught installation and configuration on how to install and enable a Letsencrypt SSL certificate on&#46;&#46;&#46;<\/p>\n","protected":false},"author":1,"featured_media":875,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"image","meta":{"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"ngg_post_thumbnail":0,"footnotes":""},"categories":[9],"tags":[87,88,86,89,56,57,43,61,53,13,90],"class_list":["post-865","post","type-post","status-publish","format-image","has-post-thumbnail","hentry","category-wowza-4","tag-4-8-232","tag-4-8-x","tag-certbot","tag-enginemanager","tag-letsencrypt","tag-ssl","tag-streamingengine","tag-streamingenginemanager","tag-ubuntu","tag-wowza","tag-wowza-letsencrypt","post_format-post-format-image"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>LetsEncrypt SSL for Wowza frontend &amp; Backend - Maca&#039;s Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"LetsEncrypt SSL for Wowza frontend &amp; Backend - Maca&#039;s Blog\" \/>\n<meta property=\"og:description\" content=\"This tutorial is part 4 of the series and will probably the most popular one. I will guide you throught installation and configuration on how to install and enable a Letsencrypt SSL certificate on&#046;&#046;&#046;\" \/>\n<meta property=\"og:url\" content=\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\" \/>\n<meta property=\"og:site_name\" content=\"Maca&#039;s Blog\" \/>\n<meta property=\"article:published_time\" content=\"2023-06-19T23:34:33+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"712\" \/>\n\t<meta property=\"og:image:height\" content=\"339\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"maca\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"maca\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"6 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\"},\"author\":{\"name\":\"maca\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711\"},\"headline\":\"LetsEncrypt SSL for Wowza frontend &#038; Backend\",\"datePublished\":\"2023-06-19T23:34:33+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\"},\"wordCount\":716,\"commentCount\":9,\"image\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg\",\"keywords\":[\"4.8.23+2\",\"4.8.x\",\"certbot\",\"enginemanager\",\"letsencrypt\",\"ssl\",\"streamingengine\",\"streamingenginemanager\",\"ubuntu\",\"wowza\",\"wowza letsencrypt\"],\"articleSection\":[\"Wowza 4.x\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\",\"url\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\",\"name\":\"LetsEncrypt SSL for Wowza frontend & Backend - Maca&#039;s Blog\",\"isPartOf\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg\",\"datePublished\":\"2023-06-19T23:34:33+00:00\",\"author\":{\"@id\":\"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage\",\"url\":\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg\",\"contentUrl\":\"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg\",\"width\":712,\"height\":339,\"caption\":\"wowza letsencrypt\"},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/#website\",\"url\":\"https:\/\/vanmarion.nl\/blog\/\",\"name\":\"Maca&#039;s Blog\",\"description\":\"Wowza, Linux, Enecsys and other stuff\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/vanmarion.nl\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711\",\"name\":\"maca\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g\",\"caption\":\"maca\"},\"url\":\"https:\/\/vanmarion.nl\/blog\/blog\/author\/maca\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"LetsEncrypt SSL for Wowza frontend & Backend - Maca&#039;s Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/","og_locale":"en_US","og_type":"article","og_title":"LetsEncrypt SSL for Wowza frontend & Backend - Maca&#039;s Blog","og_description":"This tutorial is part 4 of the series and will probably the most popular one. I will guide you throught installation and configuration on how to install and enable a Letsencrypt SSL certificate on&#46;&#46;&#46;","og_url":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/","og_site_name":"Maca&#039;s Blog","article_published_time":"2023-06-19T23:34:33+00:00","og_image":[{"width":712,"height":339,"url":"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg","type":"image\/jpeg"}],"author":"maca","twitter_misc":{"Written by":"maca","Est. reading time":"6 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#article","isPartOf":{"@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/"},"author":{"name":"maca","@id":"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711"},"headline":"LetsEncrypt SSL for Wowza frontend &#038; Backend","datePublished":"2023-06-19T23:34:33+00:00","mainEntityOfPage":{"@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/"},"wordCount":716,"commentCount":9,"image":{"@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage"},"thumbnailUrl":"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg","keywords":["4.8.23+2","4.8.x","certbot","enginemanager","letsencrypt","ssl","streamingengine","streamingenginemanager","ubuntu","wowza","wowza letsencrypt"],"articleSection":["Wowza 4.x"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/","url":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/","name":"LetsEncrypt SSL for Wowza frontend & Backend - Maca&#039;s Blog","isPartOf":{"@id":"https:\/\/vanmarion.nl\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage"},"image":{"@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage"},"thumbnailUrl":"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg","datePublished":"2023-06-19T23:34:33+00:00","author":{"@id":"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/vanmarion.nl\/blog\/blog\/letsencrypt-ssl-for-wowza-frontend-backend\/#primaryimage","url":"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg","contentUrl":"https:\/\/vanmarion.nl\/blog\/wp-content\/uploads\/2023\/06\/wowza-update-installer-part-4.jpg","width":712,"height":339,"caption":"wowza letsencrypt"},{"@type":"WebSite","@id":"https:\/\/vanmarion.nl\/blog\/#website","url":"https:\/\/vanmarion.nl\/blog\/","name":"Maca&#039;s Blog","description":"Wowza, Linux, Enecsys and other stuff","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/vanmarion.nl\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/vanmarion.nl\/blog\/#\/schema\/person\/e9c1e885818c75706a442ce1c36bb711","name":"maca","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/641a1e07cd7e1f30db468083ae1cea555b71bdc7907907b9effd82afcef9af52?s=96&d=mm&r=g","caption":"maca"},"url":"https:\/\/vanmarion.nl\/blog\/blog\/author\/maca\/"}]}},"_links":{"self":[{"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/posts\/865","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/comments?post=865"}],"version-history":[{"count":2,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/posts\/865\/revisions"}],"predecessor-version":[{"id":876,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/posts\/865\/revisions\/876"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/media\/875"}],"wp:attachment":[{"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/media?parent=865"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/categories?post=865"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/vanmarion.nl\/blog\/wp-json\/wp\/v2\/tags?post=865"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}