Comments (7)
Curl commands are not necessary. I think just printing the challenge with some instructions and waiting user's action to continue would be sufficient.
For example, something like this for http-01:
$ lego --domains example.com --email [email protected] run --manual
...
A HTTP get request to url
http://example.com/.well-known/acme-challenge/{token}
must return the following string in the response body
{jws string here}
Press ENTER when your server is ready.
from lego.
I had a quick look at what the "manual" plugin does for the official client.
Am I right with the assumption that lego would need to output curl commands for example which a user could use to run them on a distant machine?
from lego.
+1
from lego.
+1
from lego.
Is there a way to use this for an automated process of what an admin would do with it? I am interested in getting a cert that covers a group of machines, say 20 subdomains where each subdomain is only hosted from one machine in a way to avoid rate limits.
from lego.
@Gaillard Why not get a SAN cert for the 20 subdomains and then distribute them across your machines?
from lego.
Wondering if this is still necessary anymore; and even if so, if it is a good idea at all. The goal is to automate the process of managing certificates. If there a manual step is possible, then we fall short of that and people continue to rely on manual ways.
from lego.
Related Issues (20)
- GANDIv5: API Key and PAT HOT 1
- S3 with custom endpoint HOT 3
- Error when using LEGO v4.14.2 with OVH API in azukaar/Cosmos-Server project HOT 2
- Support passing a cloudflare zone id instead of a zone read key HOT 4
- Don't create CSRs with a Common Name that is longer than 64 bytes HOT 3
- Dnspod api deprecated HOT 1
- Route53 with delegated zone for dns acme detects wrong zone HOT 2
- route53: aws-sdk-go-v2 no longer allows empty region HOT 4
- Can't get single certificate for both `DOMAIN.com` and `*.DOMAIN.com` HOT 16
- Help with Bunny DNS / Lego / Traefik setup HOT 1
- Please release Azure OIDC support
- desec: increase default `DESEC_PROPAGATION_TIMEOUT` by 60s HOT 4
- directadmin plugin HOT 1
- AutoDNS - mandatory credentials listed as additional HOT 2
- ionos: DNS records not removed HOT 12
- IONOS DNS Cleanup does not work HOT 1
- Misleading log output
- Enable option to use single command to create or renew cert HOT 1
- support several DNS providers at once HOT 3
- Support for provider: Abion
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from lego.