Skip to content
Discussion options

You must be logged in to vote

For those folks landing this page today, we now have a workaround allowing you to set up and renew your wildcard certificates without switching to Vercel name servers. Please follow this guide: https://vercel.com/guides/wildcard-domain-without-vercel-nameservers

tl;dr; we started allowing the NS delegation method for the DNS-01 challenge.

https://letsencrypt.org/docs/challenge-types/#dns-01-challenge

Since Let’s Encrypt follows the DNS standards when looking up TXT records for DNS-01 validation, you can use CNAME records or NS records to delegate answering the challenge to other DNS zones. This can be used to delegate the _acme-challenge subdomain to a validation-specific server or zone.

Replies: 5 comments 27 replies

Comment options

You must be logged in to vote
1 reply
@waptik
Comment options

Comment options

You must be logged in to vote
9 replies
@amyegan
Comment options

@benknab
Comment options

@amyegan
Comment options

@benknab
Comment options

@codewithmilo
Comment options

Comment options

You must be logged in to vote
1 reply
@waptik
Comment options

Comment options

You must be logged in to vote
8 replies
@raRaRa
Comment options

@amyegan
Comment options

@akhil-naidu
Comment options

@raRaRa
Comment options

@amyegan
Comment options

Comment options

You must be logged in to vote
8 replies
@raRaRa
Comment options

@smaeda-ks
Comment options

@smaeda-ks
Comment options

@smaeda-ks
Comment options

Answer selected by smaeda-ks
@sanderfish
Comment options

@smaeda-ks
Comment options

@sanderfish
Comment options

@kaumac
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Help
Labels
None yet