Benjamin Bouillé bio photo

Benjamin Bouillé

IT consultant

Email Twitter Google+ LinkedIn Github Stackoverflow

The installation of LetsEncrypt tool is incredibly fast with git ! The certificate generation is really simple and the deployment in nessus application is straightforward. Notes inspired by this post.


  • OVH Virtual Private Server (VPS) with Debian 7.x (x64) OS
  • Nessus Home (v6.5.5) : download the “Nessus Home” version for Debian 6 and 7 / Kali Linux 1 AMD64
  • : a free certificate provider without registration

Get LetsEncrypt tool

On the OVH server, clone the letsencrypt repository in your home directory:

cd ~
git clone

Generate the certificate

Stop the nessus deamon :

/etc/init.d/nessusd stop

Generate a new certificate with LetsEncrypt assistant:

cd ~/letsencrypt
./letsencrypt-auto --agree-dev-preview --server auth

Deploy the certificate

Copy the following files with root priviledges using sudo :

sudo cp -i /etc/letsencrypt/live/ /opt/nessus/com/nessus/CA/servercert.pem
sudo cp -i /etc/letsencrypt/live/ /opt/nessus/var/nessus/CA/serverkey.pem
sudo cp -i /etc/letsencrypt/live/ /opt/nessus/com/nessus/CA/cacert.pem

Then restart the nessus daemon :

/etc/init.d/nessusd start


Connect to the nessus web application and check the certificate : Cert deployed


Please note that your certificate has a short life span : Let’s Encrypt CA issues short-lived certificates (90 days). See the documentation to renew the certificate :