OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 23.7 Legacy Series »
  • [Solved] ACME 3.20 plugin multi domain (SAN) dns alias mode
« previous next »
  • Print
Pages: [1]

Author Topic: [Solved] ACME 3.20 plugin multi domain (SAN) dns alias mode  (Read 745 times)

staticznld

  • Jr. Member
  • **
  • Posts: 63
  • Karma: 5
    • View Profile
[Solved] ACME 3.20 plugin multi domain (SAN) dns alias mode
« on: January 26, 2024, 01:25:56 pm »
Hi,

When i try to issue an certificate for *.example1.com and *.example2.com with DNS alias mode enabled the CN name could not be verified.

It looks like the ACME client is generating twice a txt to the DNS alias provider.
This should be one so the cname record on example1 and 2 is the same and could be verified.

Temp solution
When issuing a certificate without an alternate name set it works.
Right after that adding the alternate name again is works! (Because the first domain is already verified.)


After all it was DuckDNS which doesnt support multiple txt records!
Now using "desec.io" and everything is working fine!
« Last Edit: January 26, 2024, 08:03:51 pm by staticznld »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 23.7 Legacy Series »
  • [Solved] ACME 3.20 plugin multi domain (SAN) dns alias mode
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2