The closest thing to the previous hands-off behavior I can think of is using iptables to send port 80 to some other port, and deploying an nginx config that passes that through to port 80 on self except for the well-known ACME paths. But ugh.
You'll want to replace certbot-external:external with whatever plugin was previously used instead of webroot (that one is my now obsolete custom one).
-
-
Ah I see. I’ve always just used the webroot plugin, so I don’t need to do any of that :P
-
The point here was switching to HTTP-01/webroot from a TLS-SNI-01 based system.
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.