3 ms·
just an FYI for people that host other people's domains dynamically, there is this Openresty ( nginx + lua + other goodies) module that does this automatically,
by simplyinfinity 8y ago
just an FYI for people that host other people's domains dynamically, there is this Openresty ( nginx + lua + other goodies) module that does this automatically, and you can write a custom allow function to fetch "allowed" domains from Redis storage + store the certs in redis (for when you have multiple openresty instances) : https://github.com/GUI/lua-resty-auto-ssl https://github.com/GUI/lua-resty-auto-ssl
- bacheson1293 8y agoI was going to mention this...I've been using this setup for over a year with 6,000 domains...me thinks someone at autotrader needs to get better at Google :<
- nodesocket 8y agoAlso, using Caddy webserver in front should work. Caddy has auto-lets encrypt and a "on-demand" feature to dynamically add and verify https for domains[1]. [1] https://caddyserver.com/docs/automatic-https#on-demand https://caddyserver.com/docs/automatic-https#on-demand
- subway 8y agoThis is currently how Help Scout deploys TLS certificates for Docs sites with custom domains: https://www.helpscout.net/knowledge-base/ https://www.helpscout.net/knowledge-base/ I think we're in the ball park of 5000 domains right now.
- beepboopah 8y agoAlso vetting this, I have a similar setup and I find it wonderful