部署Let’s Encrypt开启HTTPS - 开发说
当前位置: 主页 » Nginx » 部署Let’s Encrypt开启HTTPS

部署Let’s Encrypt开启HTTPS

      2017年05月01日   阅读 1,557 次     0 评论   Tags: · ·

由于迁移了VPS,从新部署了Let’s Encrypt,支持HTTPS链接,参考安装和更新Let’s Encrypt证书,发现一个有趣的现象,Let’s Encrypt更新证书有了一个限制。

[root@kaifashuo letsencrypt]# ./letsencrypt-auto certonly --standalone --email kf@kaifashuo.com -d kaifashuo.com -d kaifashuo.com
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Cert not yet due for renewal

You have an existing certificate that has exactly the same domains or certificate name you requested and isn't close to expiry.
(ref: /etc/letsencrypt/renewal/kaifashuo.com.conf)

What would you like to do?
1: Keep the existing certificate for now
2: Renew & replace the cert (limit ~5 per 7 days) 
Select the appropriate number [1-2] then [enter] (press 'c' to cancel): 2(此处选择2)
Renewing an existing certificate
Performing the following challenges:
tls-sni-01 challenge for kaifashuo.com
tls-sni-01 challenge for kaifashuo.com
Waiting for verification...
Cleaning up challenges
Generating key (2048 bits): /etc/letsencrypt/keys/0004_key-certbot.pem
Creating CSR: /etc/letsencrypt/csr/0004_csr-certbot.pem

 - Congratulations! Your certificate and chain have been saved at
   /etc/letsencrypt/live/kaifashuo.com/fullchain.pem. Your cert will
   expire on 2017-07-30. To obtain a new or tweaked version of this
   certificate in the future, simply run letsencrypt-auto again. To
   non-interactively renew *all* of your certificates, run
   "letsencrypt-auto renew"
 - If you like Certbot, please consider supporting our work by:

   Donating to ISRG / Let's Encrypt:   https://letsencrypt.org/donate
   Donating to EFF:                    https://eff.org/donate-le

  • 版权声明:本文版权归开发说和原作者所有,未经许可不得转载。文章部分来源于网络仅代表作者看法,如有不同观点,欢迎进行交流。除非注明,文章均由 开发说 整理发布,欢迎转载,转载请带版权。

  • 来源:开发说 ( https://www.kaifashuo.com/ ),提供主机优惠信息深度测评和服务器运维编程技术。
  • 链接:https://www.kaifashuo.com/68.html
  • 评论(0

    1. 还没有任何评论,你来说两句吧


    您的邮箱地址不会被公开。 必填项已用 * 标注