4 ms·
Ask HN: Easiest and least painful way of adding Lets Encrypt?
I have a Debian box (LAMP) with some legacy PHP sites where I want to put Lets Encrypt SSL. What is the most painful way of doing that without disturbing any site that's currently running on it ? Is there any tool or script which does most of the job so that I don't have to fiddle a lot with Apache/PHP config and risk to break something ? Thanks
- stephenr 10y agoPersonally I use haproxy to forward all LE related requests to certbot in standalone mode. My email is in my profile if you want to try this and need some help.
- codegeek 10y agoUse this to get exact instructions for your setup: https://certbot.eff.org/ https://certbot.eff.org/
- patmcc 10y agohttps://caddyserver.com/ https://caddyserver.com/ - Caddy works pretty nicely, and you should be able to use it as a reverse proxy in front of apache.
- Emc2fma 10y agoWarning for anyone trying to add Lets Encrypt to GCP - absolute nightmare. Would not recommend.
- hackerboos 10y agoYou can use the certbot on your local machine and setup a txt record on the DNS of the domain. Let's Encrypt will verify ownership against that text entry.
- kim0 10y agokube-lego for kubernetes is just awesome!