-
-
Notifications
You must be signed in to change notification settings - Fork 4.8k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Port check in standalone mode #3624
Comments
I can confirm this issue, the check for open ports does not consider the option |
This is intended. If a process(nginx) is listening on any address "0.0.0.0:80", another process should not try to listen at any one local ipaddress "x,y,z,w". The second listener will have unexpected behavior, it's not guaranteed that the second listener can always get socket messages. |
I'm not sure that you are describing the issue that we're having. We have a process listening on a specific IP address and would like for acme.sh to listen on another IP address. We do not have a process listening on 0.0.0.0:80 but rather 10.0.0.1:80 and would like acme.sh use 10.0.0.2:80 |
@montaniasystemab Your issue is not the one that @Vorticity-Flux discribed. |
This is supported, I'm sure. |
Exactly this. My web server process is listening on <private_ip>:80. No process is listening on 0.0.0.0:80 or <public_ip>:80. The problem is in the line: Line 3444 in a199fc6
It uses grep to check for presence of 0.0.0.0, however this address is present in every line of ss -ntpl output in the Peer Address column.
|
please try again with latest
|
I have a multi-homed server with separate public and private network interfaces. Web server on port 80 is running on private network, port 80 is available on public network.
I try to issue new certificate with
acme.sh --issue --standalone --local-address <public_IP> -d x.y.z
but it fails withCommenting check for LOCAL_ANY_ADDRESS in _on_before_issue allows process to continue and certificate is issued successfully.
acme.sh/acme.sh
Line 3443 in a199fc6
The text was updated successfully, but these errors were encountered: