{"id":904,"date":"2018-09-30T08:35:09","date_gmt":"2018-09-30T14:35:09","guid":{"rendered":"https:\/\/wmbuck.net\/blog\/?p=904"},"modified":"2018-09-30T08:35:09","modified_gmt":"2018-09-30T14:35:09","slug":"letsencrypt-wildcard-certificates","status":"publish","type":"post","link":"https:\/\/wmbuck.net\/blog\/?p=904","title":{"rendered":"LetsEncrypt Wildcard Certificates"},"content":{"rendered":"<p>Comodo is after me to renew, offering a free year. The last time I attempted to install a wildcard certificate from Lets Encrypt, shortly after they introduced the feature, I wasn&#8217;t able to figure it out. Now, 9 months later, there is a lot more information about how to do it. Before spending the money for a commercial cert, I thought I would give it a try.<\/p>\n<p>I used the following on tarragon:<\/p>\n<p><code><br \/>\ncertbot certonly \\<br \/>\n--server https:\/\/acme-v02.api.letsencrypt.org\/directory \\<br \/>\n--manual<br \/>\n-d wmbuck.net -d *.wmbuck.net \\<br \/>\n--preferred-challenges dns<br \/>\n<\/code><\/p>\n<p>It is important that the server url by v02, because v01 servers can&#8217;t issue wildcard certs. I had to put TXT records in the DNS for them to verify, and they created the cert into the \/etc\/letsencrypt\/live directory where all the others are.<\/p>\n<p>This was trivially easy. Goodbye Comodo.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Comodo is after me to renew, offering a free year. The last time I attempted to install a wildcard certificate from Lets Encrypt, shortly after they introduced the feature, I wasn&#8217;t able to figure it out. Now, 9 months later, there is a lot more information about how to do it. Before spending the money &hellip; <a href=\"https:\/\/wmbuck.net\/blog\/?p=904\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">LetsEncrypt Wildcard Certificates<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26,21,11,10,4,33,9,15],"tags":[],"class_list":["post-904","post","type-post","status-publish","format-standard","hentry","category-apache","category-cloud","category-encryption","category-fedora","category-linux","category-security","category-ubuntu","category-website-building"],"_links":{"self":[{"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/posts\/904"}],"collection":[{"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=904"}],"version-history":[{"count":1,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/posts\/904\/revisions"}],"predecessor-version":[{"id":905,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=\/wp\/v2\/posts\/904\/revisions\/905"}],"wp:attachment":[{"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=904"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=904"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wmbuck.net\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=904"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}