Difference between revisions of "Let's Encrypt"

from HTYP, the free directory anyone can edit if they can prove to me that they're not a spambot
Jump to navigation Jump to search
 
Line 2: Line 2:
 
==Related==
 
==Related==
 
* [[Secure Sockets Layer]]
 
* [[Secure Sockets Layer]]
* [[openssl]]
+
* '''commands''':
 +
** {{l/cmd|letsencrypt}}: setup utility (I think)
 +
** {{l/cmd|certbot}}: manages certificates
 +
** {{l/cmd|openssl}}
 
==Notes==
 
==Notes==
 
* [https://letsencrypt.org/ official site]
 
* [https://letsencrypt.org/ official site]

Latest revision as of 01:28, 26 November 2022

This page is a seed article. You can help HTYP water it: make a request to expand a given page and/or donate to help give us more writing-hours!

Related

Notes

Files

  • /etc/letsencrypt/
    • +archive/ - contains one folder per domain
      • +<domain folder>/ -- folder names are arbitrary, specified in renewal/ files
    • +live/
      • +<domain name> - contains links to the current files
    • +renewal/ - contains configurations to load (equivalent to sites-enabled/ in Apache/Nginx)

I'm guessing that LE adds a new fileset to archive/<domain folder>/ for each renewal, and updates the links in live/<domain name>.

Errors

  • Error requesting challenges: Error creating new authz :: Validations for new domains are disabled in the V1 API
    • This is because of the End of Life Plan for ACMEv1
    • If you've been using Let's Encrypt via VirtualMin, you may have to actually install CertBot (apparently VirtualMin has its own method of handling renewals but will use CertBot if it is installed) - instructions here, but basically:
      • apt install socat certbot
      • certbot register

Links