Automatic generation of Let's Encrypt certificate on OVH IP LoadBalancer Next gen
1.2K
This repo contains a way to generate SSL certificate (with Let's Encrypt) and add it automatically to your IPLB instance. To do that, the domain you want to get SSL certificates must be managed by OVH.
To use that tool, we provide an docker container tracesoftware/ovh-ssl-iplb.
To run it, you should just define some environments variables:
docker run -ti --rm -e application_key=XXXX -e application_secret=XXXX -e consumer_key=XXXX -e iplb_name=ip-XXXXXX tracesoftware/ovh-ssl-iplb
By default the tool will update the SSL certificate already present in the IPLB instance.
You can use the option -d to add a domain new domains in your IPLB.
docker run -ti --rm -e application_key=XXXX -e application_secret=XXXX -e consumer_key=XXXX -e iplb_name=ip-XXXXXX tracesoftware/ovh-ssl-iplb -d app.example.com -d app2.example.com
We expose some volumes in the docker container:
/etc/dehydrated/certs which will contains SSL certificate/etc/dehydrated/accounts which will contains your Let's Encrypt account informationYou must configure this script by setting some environments variables:
application_key
application_secret
consumer_key
iplb_name
max_retry
5DEBUG
True if you want to print some extra informations and use the Let’s Encrypt staging serverTo found application_key, application_secret and consumer_key you should check this ovh documenation and this page.
Your credentials must have access to:
GET /domain/zonePOST /domain/zone/*/recordPOST /domain/zone/*/refreshDELETE /domain/zone/*/record/*GET /ipLoadbalancingGET /ipLoadbalancing/*/sslPOST /ipLoadbalancing/*/sslGET /ipLoadbalancing/*/ssl/*DELETE /ipLoadbalancing/*/ssl/*Content type
Image
Digest
Size
32.1 MB
Last updated
over 9 years ago
docker pull tracesoftware/ovh-ssl-iplb