-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Restructure repo #2
Conversation
…eck-in, resume upload, s3 file upload, QR code generator)
啊,我们还需要一个let's encrypt的自动更新容器和脚本 |
|
对于1: 对于2: 对于3: |
库已经看到了,稍后开始维护;默认情况下 acme.sh 会自动往 crontab 里塞一个任务...一定要用 timer 么?另外证书更新这种小需求或许扔在服务器容器里比较合适 |
不不不当然不一定,只是我比较习惯 systemd-timer,对于crontab不太了解……所以我第一个想到的是systemd-timer,crontab没有任何问题 |
对,个人觉得直接扔在 Nginx 容器里好了。不过如果 Nginx 容器需要经常重启的话还是新开一个容器更合适。 |
应该不会(在不频繁更改 Nginx config file 的情况下),所以可以放在同一个下面 |
如果签野卡,Let's 要求必须使用 DNS 认证,也就是不需要 .well-known 了(而且我觉得签发单域名也是 DNS 认证更方便)。acme.sh 支持多种 DNS 服务的 API 来完成自动验证,所以要看目前的 DNS 提供商是什么了 |
目前用的是 Cloudflare DNS,可以通过API实现(我之前看到过 certbot 有类似的插件) |
好,那就开两个容器好了 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
well done !
Remove hackinit and hackshanghai in 2019
since there is no ssl cert for a random domain
需要做的事情