WordPress HTTPS is intended to be an all-in-one solution to using SSL on WordPress sites.
I used this plugin for the first site I installed SSL on. Worked perfectly with no issues at all. I installed it for two more websites and started to have problems. Now I have to have the admin SSL on or it doesn't work at all. And if I try to use the force exclusive then it breaks all my links on the website. I managed to fix it by just having HTTPS on the whole site. And for some reason the images are broken if the site isn't loaded with www. so I have to add a redirect in the htaccess.
I wish there were other plugins because this one seems to be causing me more issues the more I use it.
I installed this to force HTTPS on my site. However, it's not very intuitive. you have to search the FAQs to find that if you want your main domain to have HTTPS in front of it, you have to type a / in the Filters section. The whole point of installing this plugin was to force my site to display HTTPS, why does it not do this by default?
I am now using Better WP Security instead.
Everything else is fine.
Amazing plugin, have been using for a few months, but...
My site started running slow recently, I profiled with xhprof, and this plugin was all over the place (isAdminUrl(), etc.).
Disabling the plugin reduced my page load times by about 200ms, or 1/3 -- my site is fast again.
..... went to add an nginx redirect for /wp-admin -> https://