A daunting task of getting the things secured in the app! Here’s a plethora of links that can help anyone lost/looking to get it done!
- Cant trust https? Well, roll out your own, AT YOUR OWN RISK!(A must for even https GET calls)
http://dacrazycoder.blogspot.in/2013/09/encrypt-url-parameters-using-aes-in.html - openssl | Getting started with the certificate
https://www.digitalocean.com/community/tutorials/how-to-install-an-ssl-certificate-from-a-commercial-certificate-authority - Look here if nothing works!
http://www.thefarmdigital.com/blog/technology/how-do-i-setup-ssl-on-aws-elactic-load-balancerelb/ - FF issue(double check in the browser too!)?
https://sslanalyzer.comodoca.com/ - AWS docs(perfect example of information overload)
http://docs.aws.amazon.com/elasticbeanstalk/latest/dg/configuring-https-elb.html
http://docs.aws.amazon.com/elasticbeanstalk/latest/dg/using-features.managing.elb.html
http://serverfault.com/questions/356598/why-cant-i-reach-my-amazon-ec2-instance-via-its-elastic-ip-address
http://serverfault.com/questions/238976/cname-to-aws-public-dns
http://pushentertainment.com/rds-connections-by-instance-type/(DB) - Testing what you have
http://mxtoolbox.com/productinfo/domainhealth
https://www.sslshopper.com/ssl-checker.html
https://sslanalyzer.comodoca.com/ - Small things(Hacks!)
http://stackoverflow.com/questions/22290821/using-a-wildcard-ssl-with-a-cname-pointing-to-ec2-instance
http://passwordsgenerator.net/
Dont forget, if you have a front controller for your aws, you need to apply the certificates there also!
And finally once all is set up turn off your http listeners for port 80! 🙂
And here’s a link to end the atrocities of the monopoly of the so called CA’s : https://letsencrypt.org/ 😀