OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • 18.1.1 & acme client
« previous next »
  • Print
Pages: 1 [2]

Author Topic: 18.1.1 & acme client  (Read 15005 times)

dcol

  • Hero Member
  • *****
  • Posts: 635
  • Karma: 51
    • View Profile
Re: 18.1.1 & acme client
« Reply #15 on: February 14, 2018, 10:12:29 pm »
So it's a permissions issue.

I would like to see someone (hint! hint!) write up a nice tutorial on using the acme client plugin to create certs.
Logged

TheWebWasher

  • Newbie
  • *
  • Posts: 9
  • Karma: 0
    • View Profile
Re: 18.1.1 & acme client
« Reply #16 on: February 15, 2018, 09:00:27 am »
Does anybody know when the update for acme 2.6.7 (ETA on LE package) is coming ??
Logged

TheWebWasher

  • Newbie
  • *
  • Posts: 9
  • Karma: 0
    • View Profile
Re: 18.1.1 & acme client
« Reply #17 on: February 15, 2018, 09:12:47 am »
Sorry 2.7.6 of course
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17706
  • Karma: 1618
    • View Profile
Re: 18.1.1 & acme client
« Reply #18 on: February 15, 2018, 10:03:14 am »
I will ping the FreeBSD maintainer.
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17706
  • Karma: 1618
    • View Profile
Re: 18.1.1 & acme client
« Reply #19 on: February 16, 2018, 07:24:06 am »
https://bsd.network/@dvl/99531493305337397
Logged

elektroinside

  • Hero Member
  • *****
  • Posts: 574
  • Karma: 51
    • View Profile
Re: 18.1.1 & acme client
« Reply #20 on: February 16, 2018, 08:10:13 am »
Nice :) Thanks, Franco!
Logged
OPNsense v18 | HW: Gigabyte Z370N-WIFI, i3-8100, 8GB RAM, 60GB SSD, | Controllers: 82575GB-quad, 82574, I221, I219-V | PPPoE: RDS Romania | Down: 980Mbit/s | Up: 500Mbit/s

Team Rebellion Member

TheWebWasher

  • Newbie
  • *
  • Posts: 9
  • Karma: 0
    • View Profile
Re: 18.1.1 & acme client
« Reply #21 on: February 16, 2018, 09:49:45 am »
Thanks Franco, how can we update the acme package ??
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17706
  • Karma: 1618
    • View Profile
Re: 18.1.1 & acme client
« Reply #22 on: February 16, 2018, 07:50:38 pm »
# opnsense-code tools ports
# cd /usr/ports/sysutils/acme.sh
# make
# make deinstall
# make install

Will also be in 18.1.3, but that takes two more weeks.


Cheers,
Franco
Logged

TheWebWasher

  • Newbie
  • *
  • Posts: 9
  • Karma: 0
    • View Profile
Re: 18.1.1 & acme client
« Reply #23 on: February 16, 2018, 08:53:44 pm »
Thank you, it works! In your description is a mistake

The correct directory is:

# cd /usr/ports/security/acme.sh

I am very exicited about the quick answers here. Thank you at all people !!
Logged

dcol

  • Hero Member
  • *****
  • Posts: 635
  • Karma: 51
    • View Profile
Re: 18.1.1 & acme client
« Reply #24 on: February 24, 2018, 08:31:00 pm »
Can't get a cert issued. Log shows 'Create domain key error'
I can see the key file was created.

What am I doing wrong?
Logged

eshield

  • Newbie
  • *
  • Posts: 14
  • Karma: 3
    • View Profile
Re: 18.1.1 & acme client
« Reply #25 on: February 25, 2018, 01:40:12 pm »
Quote from: dcol on February 24, 2018, 08:31:00 pm
Can't get a cert issued. Log shows 'Create domain key error'
I can see the key file was created.

What am I doing wrong?
Well, um, bro, update your acme.sh script or wait for 8.1.3 in a week or so  8) How to?  :o This has been answered few times some posts above  :-\
Logged

dcol

  • Hero Member
  • *****
  • Posts: 635
  • Karma: 51
    • View Profile
Re: 18.1.1 & acme client
« Reply #26 on: February 25, 2018, 06:21:19 pm »
acme.sh was updated. This is not the reason.
Logged

BeNe

  • Full Member
  • ***
  • Posts: 113
  • Karma: 13
  • Use *BSD and feel free!
    • View Profile
Re: 18.1.1 & acme client
« Reply #27 on: February 25, 2018, 06:49:32 pm »
Quote
acme.sh was updated. This is not the reason.
Still Create domain key error ?

I did what franco posted:
Code: [Select]
# opnsense-code tools ports
# cd /usr/ports/sysutils/acme.sh
# make
# make deinstall
# make install
After that i deleted the certificated that are in a failed status und created them successfully again.
Logged

eshield

  • Newbie
  • *
  • Posts: 14
  • Karma: 3
    • View Profile
Re: 18.1.1 & acme client
« Reply #28 on: February 26, 2018, 10:57:19 am »
Quote from: dcol on February 25, 2018, 06:21:19 pm
acme.sh was updated. This is not the reason.
Well, there is very only thing left: Your validation method fails. Personally, I always used a non-standard port for GUI so a HTTP-01 method never worked for me. I use DNS-01 with Hurricane Electric. I've configured DigitalOcean 2 droplets in a week and both works with DNS-01 challenge and doesn't validate with HTTP-01.
Logged

  • Print
Pages: 1 [2]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • 18.1.1 & acme client
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2