This shows you the differences between two versions of the page.
Both sides previous revision
Previous revision
Next revision
|
Previous revision
Next revision
Both sides next revision
|
userdoc:tt_acme_certificates [2017/08/09 07:39] abelbeck [ACME Configuration] |
userdoc:tt_acme_certificates [2020/09/06 11:46] abelbeck [ACME Configuration] |
| |
The "ACME Account Email Address" registration email address is used for expiry notifications, while optional it seems like a good idea to specify. | The "ACME Account Email Address" registration email address is used for expiry notifications, while optional it seems like a good idea to specify. |
| |
| !!Note -> AstLinux 1.4.0!! or later, the "ACME Account Email Address" can be used for renewal notifications, for example: |
| |
| acme-client --set-notify --notify-hook mail --notify-level 2 |
| |
!!Tip ->!! Clicking on the blue ''(i)'' icon will display topic information text similar to this documentation page. | !!Tip ->!! Clicking on the blue ''(i)'' icon will display topic information text similar to this documentation page. |
| |
!!Tip ->!! The "HTTPS Server" ACME Deploy Service also creates a ''/mnt/kd/ssl/https_stunnel_server.pem'' PEM file containing the ACME private key and full certificate chain, automatically used for the HTTPS Stunnel server and can be configured to be used with the FOP2 server for | !!Tip ->!! The "HTTPS Server" ACME Deploy Service also creates a ''/mnt/kd/ssl/https_stunnel_server.pem'' PEM file containing the ACME private key and full certificate chain, automatically used with the HTTPS Stunnel server and can be configured to be used with the FOP2 server for |
**[[userdoc:tt_asterisk-fop2-ssl|SSL/HTTPS with FOP2]]**. | **[[userdoc:tt_asterisk-fop2-ssl|SSL/HTTPS with FOP2]]**. |
| |
| |
!!Note ->!! The DNS challenge validation credentials remain stored in the ''/mnt/kd/acme/account.conf'' file so auto-renewals can be performed via ''cron''. | !!Note ->!! The DNS challenge validation credentials remain stored in the ''/mnt/kd/acme/account.conf'' file so auto-renewals can be performed via ''cron''. |
| |
| !!Special Note ->!! Depending on the acme.sh DNS provider script, some scripts store the exported credentials variable names exactly in ''/mnt/kd/acme/account.conf'' and others prepend ''SAVED_'' to the variable names. When the credentials variable names are stored exactly any later changes to the credentials must be done by editing ''/mnt/kd/acme/account.conf''. When the credentials variable names have ''SAVED_'' prepended you may use ''export ...'' later to change the saved credentials. |
| |
\\ | \\ |