How to Get Letsencrypt WILDCARD Certificate? Renew Certificate | Certbot | DNS Challenge | acme-dns

Поділитися
Вставка
  • Опубліковано 2 жов 2024

КОМЕНТАРІ • 52

  • @AntonPutra
    @AntonPutra  Рік тому +1

    🔴 - To support my channel, I’d like to offer Mentorship/On-the-Job Support/Consulting - me@antonputra.com

  • @AntonPutra
    @AntonPutra  3 роки тому +4

    ⏱️TIMESTAMPS⏱️
    0:00​ Intro
    2:14​ Demo
    5:59​ Create EC2 Instance
    9:22​ Install acme-dns Server
    18:43​ Install acme-dns-client
    19:47​ Install certbot
    20:55​ Get Letsencrypt Wildcard Certificate

  • @AntonPutra
    @AntonPutra  Рік тому

    👉 How to Manage Secrets in Terraform - ua-cam.com/video/3N0tGKwvBdA/v-deo.html
    👉 Terraform Tips & Tricks - ua-cam.com/video/7S94oUTy2z4/v-deo.html
    👉 ArgoCD Tutorial - ua-cam.com/video/zGndgdGa1Tc/v-deo.html

  • @vinaykantpandey8614
    @vinaykantpandey8614 3 роки тому +1

    Highly Appreciate this video,Thanks a tonne

  • @Andremzsptm
    @Andremzsptm 3 роки тому +1

    Worked perfectly. Thank you

  • @watson8087
    @watson8087 Рік тому +1

    Great tutorial.
    Thanks.

  • @SidharthMiddela
    @SidharthMiddela Рік тому

    Very helpful.
    Thanks a lot.

  • @PrateekMishra-mk6es
    @PrateekMishra-mk6es Рік тому +1

    i don't know it will work or not but looks very great

  • @AntonPutra
    @AntonPutra  3 роки тому +2

    🔴NEW/UPDARED🔴 - How to Setup Auto-Renew for Letsencrypt WILDCARD Certificate with DNS challenge? - ua-cam.com/video/7jEzioFsyNo/v-deo.html

    • @AntonPutra
      @AntonPutra  3 роки тому +1

      It will be available on Aug 19, 2021

  • @mariocortes2670
    @mariocortes2670 3 роки тому +2

    Great tutorial, I have read that this it is one of the most secure ways to automate dns challenge because you don't need to expose your dns provider credentials.

  • @MrStefanica
    @MrStefanica 2 роки тому

    Cool tutorial !

  • @worldofnissanka9222
    @worldofnissanka9222 2 роки тому

    i am getting this email all the time. i am using cyberpal : Unable to renew certificate: Updating challenge for [domain]: acme: error code 400 "urn:ietf:params:acme:error:connection": Fetching 404.html: Redirect loop detected | Is there any solution please tell me..i don't even know what is this

    • @AntonPutra
      @AntonPutra  2 роки тому

      Unfortunately, I'm not familiar with cyberpal at all.

  • @NileAndRhein
    @NileAndRhein 2 місяці тому

    This is really a great tutorial. However I encountered a problem. I have executed step-by-step exactly as you indicated and all the commands went on smoothly. however when attempting to create the test cert. I receive the error: "certbot.errors.HookCommandNotFound: acme-dns-client-hook command manual-auth exists, but is not executable." Can you suggest where the problem is to solve it"? Thank you so much Anton.

    • @AntonPutra
      @AntonPutra  2 місяці тому

      Thank you, but I recorded this tutorial a while ago. I don't remember all the details. Sorry.

  • @amr-50
    @amr-50 2 роки тому +2

    great video thanks for sharing your knowledge , slava ukraine

  • @AzzMdA
    @AzzMdA Рік тому +1

    Thanks!

  • @Serpher1
    @Serpher1 3 роки тому +1

    What if my DNS provider doesn't have an API available ?? Am I stuck on manual mode?

    • @AntonPutra
      @AntonPutra  3 роки тому +1

      You don't need to use the API of your DNS provider in this case. You will outsource your DNS challenges to your own DNS server. The setup a little bit complicated but it will allow you to automatically renew your wildcard certificates.

    • @flash_gif
      @flash_gif 3 роки тому

      @@AntonPutra or how about changing the nameservers to one of the supported dns providers and then use thier API?

    • @AntonPutra
      @AntonPutra  3 роки тому +1

      @@flash_gif sure, you can transfer your domain (change nameservers) to the one which supports it.

    • @GG-sc2pj
      @GG-sc2pj 3 роки тому

      @@AntonPutra Hello thanks for the video, do you have any reference for this procedure you're mentioning here to outsource etc..?

  • @EricOnYouTube
    @EricOnYouTube 4 місяці тому

    Where do I geet the certbot script?

    • @AntonPutra
      @AntonPutra  4 місяці тому

      It's been a while, can you clarify what script exactlly?

  • @AzzMdA
    @AzzMdA Рік тому +1

    Excellent tutorial!!

  • @fernandovillamaria5174
    @fernandovillamaria5174 3 роки тому

    Hello, thanks for the tutorial, is it possible to do an automatic renewal if the dns server is bind?

    • @AntonPutra
      @AntonPutra  3 роки тому

      Hey, I don't think that you can use bind to automate renewal. DNS server that I use in the video was specifically build for that task.

  • @TheL337trance
    @TheL337trance Рік тому

    What do you use to make that flow graph? I like the look of it

    • @AntonPutra
      @AntonPutra  Рік тому

      now i use adobe illustrator & after effects

  • @davidmontdajonc6332
    @davidmontdajonc6332 3 роки тому

    Hi Anton! When I get the wildcard certificate I get this message: "Certbot has set up a scheduled task to automatically renew this certificate in the background". So do I need to create a cron job as you do? Just to ensure it runs twice? Thanks!!

    • @AntonPutra
      @AntonPutra  3 роки тому

      You want to check that "scheduled task" which is either cron job or a systemd timer. Unless it has following flags "--manual", "--preferred-challenges dns", "--manual-auth-hook 'acme-dns-client' it is not going to update your wildcard certificate. It will work only for certificates that were issued for certain domains such as "blog.example.com" and not "*.example.com". I have a video coming up on Thursday which is much better quality.

    • @AntonPutra
      @AntonPutra  3 роки тому

      exception would be if you are using certbot dns plugins

    • @davidmontdajonc6332
      @davidmontdajonc6332 3 роки тому

      Okay thank you for the information. I will check the new video!

    • @AntonPutra
      @AntonPutra  3 роки тому

      @@davidmontdajonc6332 good luck :)

  • @hengborchhay6388
    @hengborchhay6388 3 роки тому +1

    This Video is very lesson for beginner like me anyhow if possible may you make a video to renew ssl through ansible ?

    • @AntonPutra
      @AntonPutra  3 роки тому +1

      Sure I can make one in the future

  • @smitjainsj
    @smitjainsj 3 роки тому +1

    Man you are’ making the right videos ... please keep doing it

  • @indobo3678
    @indobo3678 3 роки тому

    Are yu Indonesian sir?

    • @AntonPutra
      @AntonPutra  3 роки тому

      no, russian :)

    • @indobo3678
      @indobo3678 3 роки тому

      @@AntonPutra yur last name like Indonesian, Putra (is Son) 😁