A way to keep renewing certificates on a kemp load balancer
493
Let's Encrypt for Kemp Load Balancers
The bound /etc/letsencrypt/configs folder should have:
certbot to consumecertbotThe *.post.sh files should be executable (chmod +x *.post.sh) and look roughly like so:
#!/bin/sh
DIR=`ls -1dt /etc/letsencrypt/live/my.domain* | head -n1`
CERT="$DIR/cert.pem"
KEY="$DIR/privkey.pem"
cat $CERT $KEY > /tmp/comb.pem
curl -X POST --data-binary "@/tmp/comb.pem" -k "https://user:[email protected]/access/addcert?cert=cert_name&replace=1"
rm /tmp/comb.pem
Sometimes certbot will generate directories with -#### appended, so the above script will use wildcards to find the most recently created directory.
docker run -d -p 80:80 -v /non_container_storage/letsencrypt:/etc/letsencrypt kemp-lets-encrypt
Content type
Image
Digest
Size
28.2 MB
Last updated
over 6 years ago
docker pull ca0abinary/kemp-lets-encrypt