Overview
Secure your branded domains using SSL certificates. SSL helps protect the connection between visitors and your branded links by enabling secure HTTPS access.
When you connect a custom domain to SPRL, the domain must be correctly configured and verified before SSL can be activated. Once SSL is active, your branded links can be accessed securely using HTTPS.
Good to Know:
HTTPS helps protect information transmitted between a visitor's browser and your branded domain. Always use the HTTPS version of your branded links when sharing them publicly.
What Is SSL?
SSL, commonly referred to today as TLS, is a security technology used to encrypt communication between a user's browser and a website or web service.
For branded short links, SSL enables your custom domain to use secure HTTPS connections.
| Term | Meaning |
|---|
| SSL | Commonly used term for certificates and technologies that secure web communication. |
| TLS | The modern protocol used to secure HTTPS communication. |
| HTTPS | The secure version of HTTP used to communicate over an encrypted connection. |
Why SSL Matters for Branded Domains
Using HTTPS for your branded domain provides visitors with a secure connection and helps establish trust when they interact with your branded links.
- Encrypts communication between the browser and your branded domain.
- Helps protect information transmitted over the connection.
- Enables HTTPS access for branded links.
- Provides a secure browsing experience for visitors.
- Helps establish trust when sharing branded URLs.
Important:
SSL protects the connection between the browser and the domain. It does not make an unsafe destination URL safe or guarantee that the destination website is trustworthy.
Custom Domain & SSL Setup
Before SSL can be activated for a branded domain, the custom domain must be configured correctly in SPRL and the required DNS records must be detected.
- Add your custom domain in SPRL.
- Configure the DNS records provided by SPRL.
- Allow time for DNS changes to propagate.
- Wait for SPRL to verify the domain.
- Allow SSL activation to complete.
- Test your branded link using HTTPS.
Recommended:
Complete domain verification and SSL activation before using a new branded domain in production campaigns.
DNS Configuration
DNS configuration connects your custom domain or subdomain to the SPRL infrastructure. The required DNS record depends on how your custom domain is configured.
Always use the DNS values displayed in your SPRL account rather than relying on values from another domain or configuration.
- Enter the DNS record exactly as provided by SPRL.
- Check the record type and target value carefully.
- Avoid unnecessary DNS changes.
- Allow DNS propagation after making changes.
- Verify the domain again after propagation.
Important:
Incorrect DNS records can prevent domain verification and delay SSL activation. If your DNS provider automatically modifies or appends domain names, verify the final record carefully.
Domain Verification
SPRL verifies your custom domain after detecting the required DNS configuration.
A domain may remain pending while DNS changes are propagating or while the required records cannot yet be validated.
| Status | Meaning |
|---|
| Pending | The required DNS configuration has not yet been successfully detected. |
| Verified | The domain configuration has been successfully validated. |
| SSL Active | The domain is ready to use securely through HTTPS. |
SSL Activation
After successful domain verification, SSL activation can proceed for the custom domain.
SSL activation may require some time after verification. Avoid repeatedly changing DNS records while waiting because unnecessary changes can delay troubleshooting and verification.
Good to Know:
If your domain has been verified but HTTPS is not yet available, allow the SSL activation process to complete before making additional DNS changes.
Using HTTPS Branded Links
Once SSL is active, use the HTTPS version of your branded domain when sharing links.
For example:
https://go.example.com/offer
Using HTTPS provides visitors with an encrypted connection to your branded domain.
- Use HTTPS links in marketing campaigns.
- Use HTTPS links in emails and messages.
- Use HTTPS links in QR codes where applicable.
- Use HTTPS links in websites and digital content.
Root Domain vs. Subdomain
You may configure a dedicated subdomain for branded links when your primary domain is already being used for your website or another service.
Examples include:
- go.example.com
- links.example.com
- click.example.com
Using a dedicated subdomain can make it easier to separate your branded link infrastructure from your main website.
Recommendation:
A dedicated subdomain is often a practical choice when your primary domain already hosts an active website.
SSL & Destination URLs
SSL secures the connection to your branded domain, but it does not automatically secure or validate the destination website.
For example, if a branded link redirects visitors to another website, the destination website should also use HTTPS where appropriate.
Important:
A secure branded short link does not guarantee that the destination website is secure, legitimate, or free from malicious content. Always verify the destination URL before publishing a link.
Common Domain & SSL Issues
| Issue | Possible Cause / Solution |
|---|
| Domain Pending | DNS changes may still be propagating or the required record has not been detected. |
| Verification Failed | Review the DNS record and ensure it exactly matches the configuration provided by SPRL. |
| SSL Not Active | Confirm that domain verification has completed successfully and allow SSL activation to complete. |
| HTTPS Not Working | Check the domain verification and SSL status before making further DNS changes. |
| Certificate Warning | Confirm that you are accessing the correct branded domain and that SSL activation has completed. |
| Branded Link Not Working | Verify the custom domain configuration, DNS status, SSL status, and destination URL. |
DNS Propagation
DNS changes are not always visible immediately. DNS propagation time depends on the DNS provider, record configuration, caching, and other factors.
SPRL cannot control how quickly third-party DNS providers propagate changes across the internet.
- Allow sufficient time after making DNS changes.
- Avoid repeatedly changing the same record while waiting.
- Verify the final DNS configuration with your DNS provider.
- Retry domain verification after the configuration has propagated.
Changing DNS Providers
If you move your domain to another DNS provider, the DNS records required for your SPRL custom domain must be recreated with the new provider.
Before changing DNS providers, document the existing configuration and ensure that the required SPRL records are recreated after the migration.
Important:
Changing DNS providers without recreating the required SPRL records can cause your branded links or domain verification to stop working.
Domain Security Best Practices
- Use a domain controlled by your organization.
- Protect access to your domain registrar and DNS provider.
- Use strong credentials for DNS and registrar accounts.
- Enable two-factor authentication where available.
- Keep DNS records documented.
- Review DNS changes carefully.
- Use HTTPS branded links.
- Test important branded links after DNS changes.
- Review domains that are no longer required.
Domain & SSL Security Checklist
| Practice | Status |
|---|
| Domain ownership controlled by your organization | Recommended |
| DNS configuration completed correctly | Required |
| Domain successfully verified | Required |
| SSL successfully activated | Required |
| HTTPS branded link tested | Recommended |
| Registrar and DNS credentials protected | Required |
| Two-factor authentication enabled where available | Recommended |
| DNS configuration documented | Recommended |
| Destination URLs reviewed | Recommended |
Frequently Asked Questions
Does SPRL provide SSL for custom domains?
Yes. SSL activation is part of the custom domain setup process after successful domain verification.
Do I need to install an SSL certificate manually?
No. Manual certificate installation is not normally required for SPRL-managed custom domain SSL activation.
Why is my domain still pending?
The DNS configuration may still be propagating, or SPRL may not yet be able to detect the required DNS records.
Why is HTTPS not working after I added my domain?
Check whether the domain has been successfully verified and whether SSL activation has completed. Avoid making unnecessary DNS changes while waiting for the process to complete.
Does HTTPS make my destination URL safe?
No. HTTPS secures the connection to the branded domain but does not guarantee that the destination website is safe or legitimate.
Can I use a subdomain for branded links?
Yes. A dedicated subdomain such as go.example.com or links.example.com can be used for branded links.
What happens if I change DNS providers?
You must recreate the required SPRL DNS configuration with the new DNS provider. Failing to do so may affect domain verification and branded links.
Should I use HTTP or HTTPS links?
Use HTTPS whenever available. HTTPS provides a secure connection between the visitor's browser and your branded domain.
Quick Reference
| Topic | Summary |
|---|
| DNS | Configure the required DNS records provided by SPRL. |
| Verification | SPRL verifies the custom domain after detecting the required DNS configuration. |
| SSL | SSL activation follows successful domain verification. |
| HTTPS | Use HTTPS versions of your branded links for secure communication. |
| Subdomains | Dedicated subdomains can be used for branded links. |
| DNS Changes | Allow time for DNS propagation and avoid unnecessary repeated changes. |
| Destination | SSL on the branded domain does not guarantee the destination URL is safe. |
| Security | Protect registrar, DNS, and SPRL account credentials. |
Learn More:
Explore the SPRL Help Center for detailed guides on Security Overview, Two-Factor Authentication, Managing Login Sessions, Password Security Best Practices, Recognizing Phishing Attempts, Data Privacy & User Information, API Security, Reporting Security Issues, and Security FAQs.
Tip: Keep your domain and DNS accounts secure, configure DNS carefully, wait for verification and SSL activation to complete, and always use HTTPS when sharing your branded links.