pfSense 2.7.0 - New 2024 - ACME Package & Let's Encrypt Free SSL Certificate

Поділитися
Вставка
  • Опубліковано 17 лис 2024

КОМЕНТАРІ • 23

  • @investingfiat
    @investingfiat 5 місяців тому +1

    Very well done, thank you!

    • @itkb
      @itkb  5 місяців тому

      Thank you too!

  • @MdMozammelHossain
    @MdMozammelHossain Рік тому +2

    Thank you ! It worked.

    • @itkb
      @itkb  Рік тому

      You're welcome!

  • @DarkSoulVenq
    @DarkSoulVenq Рік тому +1

    Thank you! very helpful

    • @itkb
      @itkb  Рік тому

      Glad it was helpful!

  • @fritsonpetitfrere9038
    @fritsonpetitfrere9038 2 місяці тому +1

    Do you need to create both single domain and wildcard domain for the pfsense firewall to use ssl/tls for encryption with the letsencrypt certificate and not have the not secure message?

    • @itkb
      @itkb  2 місяці тому +1

      I've created to show the public, otherwise single domain or wild card domain certificate is definitely enough to enable ssl/tls support in pfsense.

  • @michaelhechanova2898
    @michaelhechanova2898 6 місяців тому +1

    Nice

    • @itkb
      @itkb  6 місяців тому

      Thanks

  • @unoptanio
    @unoptanio 11 місяців тому +1

    Hi, I followed your Drive to the letter and everything worked for access to secure webgui. Now I'm on the first automatic renewal of the certificate but it doesn't work.
    The following error message returns:
    "The dns manual mode can not renew automatically, you must issue it again manually. You'd better use the other modes instead."
    So it seems that the Manual DNS method should not be used??? How to change this?

    • @itkb
      @itkb  11 місяців тому +1

      Great question.
      In manual mode manual certificate renewal requires the same DNS TXT record but with a unique value.
      This means every renewal requires manual intervention to add new value. But you should use the DNS API instead for automatic renewal.

    • @unoptanio
      @unoptanio 11 місяців тому

      @@itkb
      Hi, my DNS manager is called Aruba and does not appear in the list of methods in pfsense to manage renewal with the API.
      Can you give me some suggestions?
      I saw that there is also a method called "standalone HTTP server" but I have no idea if it would be suitable for solving my automatic renewal problem

    • @unoptanio
      @unoptanio 11 місяців тому

      @@itkb
      when you talk about using DNS api, what do you specifically mean? what should I do? what steps?

    • @itkb
      @itkb  11 місяців тому

      other than DNS methods, off-course you have use other methods i.e. standalone HTTP server, but its required your firewall to open port 80 for domain verification.

    • @itkb
      @itkb  11 місяців тому

      DNS APIs take care of managing DNS records automagically when renewal is required, thus you have to authenticate first with your DNS server.

  • @oleksandrlytvyn532
    @oleksandrlytvyn532 10 місяців тому

    Thank you

    • @itkb
      @itkb  10 місяців тому

      You're welcome

  • @DenverCompDoc
    @DenverCompDoc Рік тому +1

    haproxy video?

    • @itkb
      @itkb  Рік тому +1

      Very soon