“Let’s talk about politics.” We know. This is a phrase absolutely no one wants to hear uttered around the dinner table or backyard barbecue these days. But hear us out. …
Yes! Mediavine Ads are SSL compatible. Just follow this guide to make sure you’ve set up your site to serve over secure https correctly!
Are you looking to make your site SSL compatible to increase security or to make your site more Google SEO friendly? The good news is Mediavine ads are set up to be served over SSL. If you want to read about how https ads perform versus http ads, please read our blog post on Mediavine SSL Ads.
Okay so you made the decision to go secure. Please make sure you or your technical person keeps the following things in mind.
1. Make sure our script wrapper is being called over https://
Our script wrapper should already be set up to serve over SSL http/2 if you’re running the latest version of our script wrapper code. That code should include what’s called a Protocol-relative URL, or a URL that begins with // instead of http:// or https://.
That means the script wrapper should automatically serve over https:// if you’re browsing your site https://. To verify you’re running the latest version of our script wrapper, make sure you’re either serving it via our Mediavine Control Panel plugin in WordPress, or you grab the latest code from your dashboard under Settings > Ad Setup.
2. Switch over all resources to load over https://
When you go SSL, more than just your page needs to be SSL. Every single image, stylesheet, JavaScript, etc has to be served over https://.
You should do as many as you can by hand, verifying that those resources serve properly over SSL, and use a plugin to convert the rest over.
3. IMPORTANT for Ads: Set up a CSP to Block All Mixed Content
If you missed any resources in step #2, a Content Security Policy (CSP) to “block all mixed content” will help catch the rest. This is also especially important with advertisements.
There are millions of ads out there and although they’re supposed to respect a SSL request, it is possible for one to return an ad with an insecure resource.
Setting a CSP to block mixed content will make sure your page doesn’t show any insecure elements. You can read more in our Content Security Policies help article.
4. Redirect all http:// URLs to https://
In order to preserve your search engine rankings and to make sure you have the best user experience make sure every page redirects from http:// to the https:// equivalent on your site, and is set up as a proper 301 redirect.
For example, each article needs to 301 redirect to the https equivalent as such:
http://www.foodfanatic.com/2017/01/english-tea-sandwiches/
Redirects To ->
https://www.foodfanatic.com/2017/01/english-tea-sandwiches/
5. Set up a NEW Webmaster Search Console property
A https:// version of your site is technically a whole new site so make sure you create a new property in Google Webmaster Search Console.
6. Make sure you update your Google Analytics profile
You can continue to use your existing Google Analytics profile, but make sure you update it to change the base URL to https://
7. Update all your social media profiles to link to your https:// version
Every social media profile you have that lets you list your URL should be updated to the secure version, from Facebook to Pinterest to Periscope (is Periscope still a thing?).
Bottom line: if you’re linking back to yourself from a social platform, make sure you’re doing it with the https:// version of your URL.
Subscribe for Updates
Stay up to date with the latest from Mediavine
Related Posts
It seems hard to believe that we’re more than a month into a new year, and with it, a new and ever-changing technological landscape. Looking back on the previous year, …
Ah, July. It’s a glorious month of sand-filled swimsuits, mosquito invasions, broken air conditioners and applying sunscreen only to look like cooked lobsters. It’s also the start of a new …