Force SSL using .htaccess file


Here is what I have my .htaccess file set at, but if I type in, it still will not force to https:// 

I also need it so when a user types in, it forces to 

any help?  thank you.

# -FrontPage-

IndexIgnore .htaccess */.??* *~ *# */HEADER* */README* */_vti*

<Limit GET POST>
order deny,allow
deny from all
allow from all
order deny,allow
deny from all
AuthUserFile service.pwd
AuthGroupFile service.grp
rewriteEngine on
rewriteCond %{HTTP_HOST} !^mydomain\.com
rewriterule (.*)$1 [R=301,L]
According to the Apache SSL man page, you need to use SSLRequireSSL

Syntax: SSLRequireSSL
Context: server config, virtual host, .htaccess, directory
Override: FileInfo
Status: Extension
Module: Apache-SSL
Compatibility: ??

Require SSL. This can be used in sections (and elsewhere) to protect against inadvertantly disabling SSL. If SSL is not in use when this directive applies, access will be refused. This is a useful belt-and-braces measure for critical information. Conversely, deny SSL connections with SSLDenySSL.


<Directory /some/where/important>

Another example I found was:

The following snippet can be put in your .htaccess file to force access to go through an encrypted connection:

<IfModule !mod_ssl.c>
  RedirectMatch /(.*)$$1
Observe the https in the redirect.

(Note: if you are using a Personal Domain or CGI Scripts with a password, you will need to change www to username.web or cgi respectively).

Got that info from:  (which, btw, is a GREAT page for all kinds of useful methods for securing a page)

RewriteEngine On
RewriteCond %{Server_Name} ^www\.
RewriteRule (.*)  https://%{REQUEST_URI} [L]
RewriteCond %{HTTPS} !^on$
RewriteRule (.*) https://%{SERVER_NAME}%{REQUEST_URI} [L]
# feel free to use R, P flag as you like
