install Nginx, SSL Let's Encrypt, PHP, MySQL, Postfix on Ubuntu 19.10 x64 (Eoan Ermine)

November 13, 2019 663 views
Nginx PHP Ubuntu Let's Encrypt

Here is a tutorial to install Nginx, let’s encrypt SSL, PHP7.3, MySQL, PHPmyadmin Postfix on Ubuntu 19.10 x64 (Eoan Ermine).

I just finished an installation without any problem.

package version :

  • nginx-extras 1.16.1
  • php7.3 fpm 7.3.11
  • mysql 8.0.18
  • phpmyadmin 4.6.6-5
  • postfix 3.4.5-1
  • certbot
  • certbot-dns-digitalocean

update & upgrade

$ sudo apt update
$ sudo apt upgrade

install nginx-extras 1.16.1

$ wget --no-check-certificate
$ sudo apt-get install ./nginx-extras_1.16.1-0ubuntu2_amd64.deb

install php7.3 fpm 7.3.11

$ wget --no-check-certificate
$ sudo apt-get install ./php7.3-fpm_7.3.11-0ubuntu0.19.10.1_amd64.deb

install mysql-server 8.0.18 & mysql-client 8.0.18

  1. download the MySQL repositories

    $ wget –c
  2. install the MySQL repositories

    $ sudo apt-get install ./mysql-apt-config_0.8.14-1_all.deb
  3. Refresh the Repositories

    $ sudo apt-get update
  4. Install MySQL

    $ sudo apt-get install mysql-server
  5. Set up MySQL Security

    $ sudo mysql_secure_installation
  6. Start, Stop, or Check Status of MySQL Service

    $ sudo service mysql status
    $ sudo service mysql stop
    $ sudo service mysql start

install phpmyadmin 4.6.6-5

$ wget --no-check-certificate
$ sudo apt-get install ./phpmyadmin_4.6.6-5_all.deb

enable Firewall for http, https, SMTP, IMAP, IMAPS, POP3, POP3S

$ sudo ufw allow 'OpenSSH'
$ sudo ufw allow 'Nginx Full'
$ sudo ufw allow 22
$ sudo ufw allow 80
$ sudo ufw allow 443
$ sudo ufw allow 143
$ sudo ufw allow 993
$ sudo ufw allow 110
$ sudo ufw allow 995
$ sudo ufw enable
$ sudo ufw status

install Postfix 3.4.5-1

$ wget --no-check-certificate
$ sudo apt-get install ./postfix_3.4.5-1ubuntu1_amd64.deb

install SSL certificate

Retrieve and automatically renew Let’s Encrypt SSL Wildcard Certificates
with the plugin certbot-dns-digitalocean and API DigitalOcean. The
dns_digitalocean plugin automates the process of completing a dns-01
challenge (DNS01) by creating, and subsequently removing, TXT records
using the DigitalOcean API.

  1. create token here:

  2. install certbot and the certbot-dns-digitalocean plugin

    $ sudo apt install certbot
    $ sudo apt install python3-certbot-dns-digitalocean
    $ sudo certbot certonly --dns-digitalocean --dns-digitalocean-credentials ~/.secrets/certbot/digitalocean.ini --dns-digitalocean-propagation-seconds 60 -d domain.tld -d *.domain.tld```
  1. renewal of certificates. renew the certificate every Monday night, and restart nginx

    $ sudo crontab -e
    30 4 * * 1 certbot renew
    40 4 * * 1 /etc/init.d/nginx reload
  2. check config & restart Nginx

    $ sudo nginx -t
    $ sudo /etc/init.d/nginx reload


1 comment
  • Hey @Nicolas2020 this is great!

    Can I ask a favor? Could you re-post this where:

    1. Update the title to be phrased as a Question, maybe: How to install Nginx, SSL Let's Encrypt, PHP, MySQL, Postfix on Ubuntu 19.10?
    2. Move the content to the answer (you can answer your own question)
    3. Take a read through - and add some context and explanation to your answer, this will help future readers at all levels.
    by Hazel Virdó
    by Brian Hogan
    DigitalOcean is excited to continue building out its collection of technical articles related to server administration and software engineering. To keep the DigitalOcean community unified and to ensure that articles fit our writing style, we have developed the following guidelines.
1 Answer

Hello, @Nicolas2020

Thanks for sharing this with the community! :)


Have another answer? Share your knowledge.