Client for signing certificates with DuckDNS
293
Domains section, type the name of the subdomain you wish to register and click add domain.Domains section along with current ip being the public IP address of the device you are currently using to access duckdns.org. The IP address will be updated by the DuckDNS add-on.duckdns.org and paste into the token option.domains option with the full domain name you registered. E.g., my-domain.duckdns.org.docker run -d -it --name dehydrated-duckdns --restart unless-stopped -v ${PWD}/dehydrated-duckdns/data/:/data alescim/dehydrated-duckdns
version: '3'
services:
dehydrated-duckdns:
container_name: dehydrated-duckdns
image: alescim/dehydrated-duckdns
volumes:
- "${PWD}/dehydrated-duckdns/data/:/data"
restart: unless-stopped
Make a copy of dehydrated-duckdns/data/options.example.json file as dehydrated-duckdns/data/options.json
options.json configuration:
{
"lets_encrypt": {
"accept_terms": true,
"certfile": "fullchain.pem",
"keyfile": "privkey.pem",
"algo": "rsa"
},
"token": "<<YOUR DUCKDNS TOKEN>>",
"domains": [
"<<YOUR DUCKDNS DOMAIN>>"
],
"aliases": [],
"seconds": 600,
"ipv4": "<<YOUR DUCKDNS IP>>"
}
lets_encryptThe following options are for the option group: lets_encrypt. These settings
only apply to Let's Encrypt SSL certificates.
lets_encrypt.accept_termsOnce you have read and accepted the Let's EncryptSubscriber Agreement, change value to true in order to use Let's Encrypt services.
lets_encrypt.certfileThe name of the certificate file generated by Let's Encrypt. The file is used for SSL by Home Assistant add-ons and is recommended to keep the filename as-is (fullchain.pem) for compatibility.
Note: The file is stored in /data/ssl/, which is the default for Home Assistant
lets_encrypt.keyfileThe name of the private key file generated by Let's Encrypt. The private key file is used for SSL by Home Assistant add-ons and is recommended to keep the filename as-is (privkey.pem) for compatibility.
Note: The file is stored in /data/ssl/, which is the default for Home Assistant
lets_encrypt.algoPublic key algorithm that will be used.
Supported values: rsa, prime256v1 and secp384r1.
The default is rsa
ipv4 (optional)By default, Duck DNS will auto detect your IPv4 address and use that. This option allows you to override the auto-detection and specify an IPv4 address manually.
If you specify a URL here, contents of the resource it points to will be fetched and used as the address. This enables getting the address using a service like https://api.ipify.org/ or https://ipv4.text.wtfismyip.com
ipv6 (optional)By default, Duck DNS will auto detect your IPv6 address and use that. This option allows you to override the auto-detection and specify an IPv6 address manually.
If you specify a URL here, contents of the resource it points to will be fetched and used as the address. This enables getting the address using a service like https://api6.ipify.org/ or https://ipv6.text.wtfismyip.com
tokenThe DuckDNS authentication token found at the top of the DuckDNS account landing page. The token is required to make any changes to the subdomains registered to your account.
domainsA list of DuckDNS subdomains registered under your account. An acceptable naming convention is my-domain.duckdns.org.
aliases (optional)A list aliases of domains configured on the domains option.
This is useful in cases where you would like to use your own domain.
Create a CNAME record to point at the DuckDNS subdomain and set this value accordingly.
For example:
{
"domains": [
"my-domain.duckdns.org"
],
"aliases": [
{
"domain": "ha.my-domain.com",
"alias": "my-domain.duckdns.org"
}
]
}
Don't add your custom domain name to the domains array. For certificate creation, all unique domains and aliases are used.
Also, don't forget to make sure the dns-01 challenge can reach Duckdns. It might be required to add a specific CNAME for that:
CNAME _acme-challenge.<own-domain> _acme-challenge.<domain>.duckdns.org
CNAME <own-domain> <domain>.duckdns.org
secondsThe number of seconds to wait before updating DuckDNS subdomains and renewing Let's Encrypt certificates.
ipv6 to get around this, read on.Content type
Image
Digest
Size
5.2 MB
Last updated
over 4 years ago
docker pull alescim/dehydrated-duckdns