Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


davidcole

6099 posts

Uber Geek
+1 received by user: 1465

Trusted

#220247 2-Aug-2017 09:08
Send private message

Of the back of https://www.geekzone.co.nz/forums.asp?forumid=66&topicid=208215

 

@freitasm - I understand how to do the letsencrypt for the public accessible parts of my network (I've got public accessible site running off home).

 

But for your other internal names where you own the domain, how are you doing the renewals if they're not accessible for verification on the internet?

 

So I have 

 

home.mydomain.com - this is  accessible this points to a machine that I internally call machine.mydomain.com

 

So I manually created a certificate last night for home.mydomain.com and machine.mydomain.com and used the dns verification.  But apprarently for renewal I'll need to do that all over again.

 

 

 

How are others handling it?





Previously known as psycik

Home Assistant: Gigabyte AMD A8 Brix, Home Assistant with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Shelly Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Server
Host Plex Server 3x3TB, 4x4TB using MergerFS, Samsung 850 evo 512 GB SSD, Proxmox Server with 1xW10, 2xUbuntu 22.04 LTS, Backblaze Backups, usenetprime.com fastmail.com Sharesies Trakt.TV Sharesight 


Create new topic
freitasm
BDFL - Memuneh
80652 posts

Uber Geek
+1 received by user: 41045

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1835405 2-Aug-2017 09:12
Send private message

I used DNS verification.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 




davidcole

6099 posts

Uber Geek
+1 received by user: 1465

Trusted

  #1835406 2-Aug-2017 09:16
Send private message

freitasm:

 

I used DNS verification.

 

 

 

 

Have you renewed?  Apparently the keys change each time.





Previously known as psycik

Home Assistant: Gigabyte AMD A8 Brix, Home Assistant with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Shelly Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Server
Host Plex Server 3x3TB, 4x4TB using MergerFS, Samsung 850 evo 512 GB SSD, Proxmox Server with 1xW10, 2xUbuntu 22.04 LTS, Backblaze Backups, usenetprime.com fastmail.com Sharesies Trakt.TV Sharesight 


freitasm
BDFL - Memuneh
80652 posts

Uber Geek
+1 received by user: 41045

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1835445 2-Aug-2017 09:53
Send private message

Yep, renewed and each time you have to change DNS. The beauty of using the other authentication method is automation but you have the problem of having to forward ports, etc - which I don't like doing on routers and other devices.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 




davidcole

6099 posts

Uber Geek
+1 received by user: 1465

Trusted

  #1835726 2-Aug-2017 13:44
Send private message

Ok.  

 

At least this may make life a little easier in future:

 

https://community.letsencrypt.org/t/wildcard-certificates-coming-january-2018/37567/4





Previously known as psycik

Home Assistant: Gigabyte AMD A8 Brix, Home Assistant with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Shelly Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Server
Host Plex Server 3x3TB, 4x4TB using MergerFS, Samsung 850 evo 512 GB SSD, Proxmox Server with 1xW10, 2xUbuntu 22.04 LTS, Backblaze Backups, usenetprime.com fastmail.com Sharesies Trakt.TV Sharesight 


Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.