Metrabyte SSL 2026 — Free SSL Let's Encrypt ติดตั้งและ Force HTTPS
Metrabyte SSL 2026 — complete guide to installing free Let's Encrypt SSL, forcing HTTPS, troubleshooting SSL issues, and understanding certificate types.
สารบัญ
SSL/TLS ทำงานอย่างไร
SSL (Secure Sockets Layer) และ TLS (Transport Layer Security) คือ protocol ที่ encrypt การสื่อสารระหว่าง browser ของผู้เข้าชมกับ web server ปัจจุบันมาตรฐานที่ใช้จริงคือ TLS 1.2 และ 1.3 (คำว่า "SSL" ยังติดปากแต่เทคโนโลยีคือ TLS) certificate ออกโดย Certificate Authority ที่ browser เชื่อถือ เช่น Let's Encrypt
SSL (Secure Sockets Layer) and TLS (Transport Layer Security) encrypt communication between a visitor's browser and a web server. The standard in real use today is TLS 1.2 and 1.3 — "SSL" remains the common name, but the technology is TLS. Certificates are issued by browser-trusted Certificate Authorities such as Let's Encrypt.
เมื่อ certificate ทำงาน browser จะแสดง padlock และ URL เปลี่ยนเป็น https:// สำหรับเว็บที่โฮสต์บน Metrabyte การ encrypt เกิดที่เครื่องในดาต้าเซ็นเตอร์ของบริษัทเองในกรุงเทพฯ ทำให้ handshake กับผู้เข้าชมในไทยมี latency ต่ำ
When a certificate is active, the browser shows a padlock and the URL switches to https://. For sites hosted on Metrabyte, encryption terminates on nodes inside the company's own Bangkok data center, so the TLS handshake with Thai visitors has low latency.
ทำไมเว็บบน Metrabyte ทุกตัวควรเปิด HTTPS
ไม่ว่าจะเป็น Cloud Hosting หรือ Cloud VPS การเปิด HTTPS เป็นพื้นฐานที่ควรทำตั้งแต่วันแรก
Whether on Cloud Hosting or a Cloud VPS, enabling HTTPS is a baseline you should set up from day one.
- SEO — Google ใช้ HTTPS เป็น ranking signal และเครื่องในไทยช่วยเรื่อง Core Web Vitals อยู่แล้ว
- Browser Warning — Chrome ขึ้น "Not Secure" สำหรับ http:// ทำให้ผู้เข้าชมไม่ไว้ใจ
- E-commerce — ร้านค้าที่รับชำระเงินต้องใช้ HTTPS ตาม PCI DSS
- ฟีเจอร์สมัยใหม่ — HTTP/2, Service Worker และ PWA ทำงานเฉพาะบน HTTPS
- Windows หรือ Linux ก็ต้องมี — ทั้ง Cloud Windows SSD และ Cloud Linux SSD ของ Metrabyte ควรเปิด HTTPS เหมือนกัน
SSL ฟรี vs SSL ที่ซื้อกับ Metrabyte
Metrabyte ขายทั้งบริการ SSL certificate และรองรับ Let's Encrypt ฟรี การเลือกขึ้นกับว่าเว็บต้องการ validation ระดับไหน
Metrabyte both sells SSL certificate services and supports free Let's Encrypt — the choice depends on the validation level your site needs.
- DV (Domain Validated) — ยืนยันแค่ความเป็นเจ้าของโดเมน ฟรีผ่าน Let's Encrypt เพียงพอกับเว็บส่วนใหญ่
- OV (Organization Validated) — ยืนยันตัวตนองค์กร เหมาะกับเว็บบริษัท ซื้อเป็น certificate ผ่าน Metrabyte ได้
- EV (Extended Validation) — ตรวจสอบองค์กรเข้มงวด เหมาะกับสถาบันการเงิน/องค์กรใหญ่
- Wildcard — ครอบคลุม *.domain.com ทุก subdomain ในใบเดียว
คำแนะนำ: เริ่มจาก Let's Encrypt ฟรีก่อน แล้วค่อยอัปเป็น OV/EV ที่ซื้อกับ Metrabyte เมื่อธุรกิจต้องการความน่าเชื่อถือระดับองค์กร
Recommendation: start with free Let's Encrypt, then upgrade to a paid OV/EV certificate purchased through Metrabyte once your business needs organization-level trust.
Let's Encrypt ฟรีบนเครื่อง Metrabyte
Let's Encrypt เป็น Certificate Authority แบบ non-profit ที่ออก DV certificate ฟรี trusted ทุก browser ใช้ได้ดีกับเว็บที่โฮสต์บน Metrabyte
Let's Encrypt is a non-profit Certificate Authority issuing free DV certificates trusted by every browser — a great fit for sites hosted on Metrabyte.
- ฟรี 100% certificate valid 90 วัน และ renew อัตโนมัติ
- Trusted โดย Chrome, Firefox, Safari, Edge ครบ
- ออก wildcard ได้แต่ต้องผ่าน DNS challenge
- บน Cloud Hosting จัดการผ่าน control panel; บน Cloud VPS (Linux) ใช้ Certbot ได้ตรงๆ
ติดตั้ง SSL บน Cloud Hosting และ Cloud VPS
วิธีติดตั้งขึ้นกับว่าเป็น Cloud Hosting (มี panel จัดการให้) หรือ Cloud VPS (จัดการเอง)
Installation depends on whether you're on Cloud Hosting (managed panel) or a Cloud VPS (self-managed).
บน Cloud Hosting: เปิด control panel → ส่วน Security/SSL → เลือกโดเมน → สั่งออก/เปิดใช้ Let's Encrypt แล้วรอไม่กี่นาที
On Cloud Hosting: open the control panel → Security/SSL section → select your domain → issue/enable Let's Encrypt and wait a few minutes.
บน Cloud Linux SSD (VPS): ใช้ Certbot ออก certificate ได้โดยตรง
sudo certbot --nginx -d yourdomain.com -d www.yourdomain.com
On Cloud Linux SSD (VPS): use Certbot to issue the certificate directly with the command above.
บน Cloud Windows SSD (VPS): ออก/ผูก certificate ใน IIS หรือใช้เครื่องมืออย่าง win-acme สำหรับ Let's Encrypt
On Cloud Windows SSD (VPS): bind the certificate in IIS, or use a tool like win-acme for Let's Encrypt.
บังคับ HTTPS (Force Redirect)
หลังออก certificate แล้ว redirect http:// ไป https:// เพื่อให้ผู้เข้าชมได้ connection ที่ปลอดภัยเสมอ
After issuing the certificate, redirect http:// to https:// so visitors always get a secure connection.
Apache (.htaccess):
RewriteEngine On
RewriteCond %{HTTPS} off
RewriteRule (.*)$ https://%{HTTP_HOST}%{REQUEST_URI} [L,R=301]
Nginx (Cloud Linux SSD): ใช้ return 301 https://$host$request_uri; ใน server block ของพอร์ต 80
WordPress: ติดตั้ง Really Simple SSL แล้ว activate จัดการ redirect + mixed content ให้อัตโนมัติ
Nginx (Cloud Linux SSD): use return 301 https://$host$request_uri; in the port-80 server block. WordPress: install and activate Really Simple SSL to handle redirects and mixed content automatically.
การต่ออายุอัตโนมัติ
Let's Encrypt มีอายุ 90 วัน จึงต้องตั้ง renew ให้อัตโนมัติ
Let's Encrypt lasts 90 days, so renewal should be automated.
- บน Cloud Hosting: control panel จัดการ renew ให้เอง ไม่ต้องแตะ
- บน Cloud VPS Linux: Certbot ติดตั้ง systemd timer หรือ cron renew ให้อัตโนมัติ
- ตรวจสอบสถานะด้วย
sudo certbot certificatesหรือผ่านหน้า panel - SSL ที่ซื้อแบบ OV/EV กับ Metrabyte อายุ 1 ปี ต้อง renew ตามรอบ ทีม Metrabyte แจ้งเตือนได้
แก้ปัญหา SSL ที่พบบ่อย
ปัญหา SSL ส่วนใหญ่มีวิธีแก้ที่ชัดเจน ถ้าติดขัดสามารถแจ้งทีม Metrabyte ทาง Line @metrabyte, โทร 02-0263-124 หรืออีเมล
Most SSL issues have clear fixes — if you get stuck, reach the Metrabyte team via Line @metrabyte, phone 02-0263-124, or email.
- "Not Secure" หลังติดตั้ง — มี Mixed Content (resource ยังโหลด http://) แก้ด้วย Really Simple SSL หรือ search-replace ในฐานข้อมูล
- ERR_SSL_PROTOCOL_ERROR — ล้าง cache + cookies ของ browser และตรวจว่า TLS version รองรับ
- Certificate Not Trusted — intermediate chain ขาด ติดตั้ง full chain ให้ครบ
- Too Many Redirects — ตั้ง force HTTPS ซ้อนกันหลายที่ ตรวจทั้ง .htaccess/Nginx/ปลั๊กอิน
- Subdomain ไม่ถูก cover — ต้องใช้ wildcard หรือออก certificate แยกสำหรับ subdomain
คำถามที่พบบ่อย (FAQ)
Metrabyte ใช้ Let's Encrypt ฟรีได้ไหม หรือต้องซื้อ SSL?
ใช้ Let's Encrypt ฟรีได้ และ Metrabyte ยังขาย SSL แบบ OV/EV สำหรับองค์กรที่ต้องการ validation สูงขึ้น You can use free Let's Encrypt; Metrabyte also sells OV/EV certificates for higher validation.
ติดตั้ง SSL บน Cloud VPS ของ Metrabyte ทำยังไง?
Cloud Linux SSD ใช้ Certbot ตรงๆ; Cloud Windows SSD ผูกใน IIS หรือใช้ win-acme On Cloud Linux SSD use Certbot directly; on Cloud Windows SSD bind in IIS or use win-acme.
Mixed Content คืออะไรแก้ยังไง?
หน้า HTTPS แต่มี resource โหลดจาก http:// ใช้ Really Simple SSL หรือ search-replace ในฐานข้อมูล An HTTPS page loading resources over http:// — fix with Really Simple SSL or a database search-replace.
ติดปัญหา SSL ติดต่อ Metrabyte ทางไหน?
ติดต่อทีมไทยผ่าน Line @metrabyte, โทร 02-0263-124 หรืออีเมล Reach the Thai team via Line @metrabyte, phone 02-0263-124, or email.