summaryrefslogtreecommitdiff
path: root/issues/systems/letsencrypt.gmi
blob: 206ac704e8116fcd74534528e60759902b02b54f (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
# Letsencrypt

## Tags

* assigned: pjotr
* type: bug
* priority: critical
* status: completed, done, closed

## Tasks

* [X] letsencrypt is failing on P2 and Tux01 (expiry Nov12)
  - letsencrypt was down
* [X] ucscbrowser needs a certificate (now forwards http -> https)

## Notes

Setup

```
certbot --nginx -d host.genenetwork.org
```

```
certbot renew --dry-run
```

CRON, for example

```
22 4 * * 3 sheepdog_run.rb -c '/usr/bin/certbot renew --quiet' --always --tag CERTBOT >> ~/cron.log 2>&1
```

Add certificate

```
certbot certonly --nginx --agree-tos --preferred-challenges http -d ucscbrowser.genenetwork.org --register-unsafely-without-email
```