Published 10 months ago
Published 10 months ago
windware-ono
Updated 10 months ago
0
There seems to be several issues requesting to support wildcard domain certificate via dns-01 challenge. (Mainly #563 )
Currently, the only way to allow wildcard certificate to be used is via uploading a file or manually pasting the content of the certificate in the web interface, which can't seem to be automated. (Unless you go by controlling a headless browser to do so...)
The linked issue seems to suggest by supporting various DNS providers for TXT record updates, but can you simply allow reading the certificate from the container's file system as that seems to be a lot simpler than supporting various DNS providers, but those are already well supported by CLI tools like certbot which can be automated and a hook can make SafeLine be reloaded upon a new certificate is issued to load the updated certificate from the mounted file system within the container.
There doesn't seem to be a way to automate to load a renewed wildcard domain certificate.
Carrie-SafeLine
Updated 10 months ago
0
We've added it to the roadmap! Thanks!
Carrie-SafeLine
Updated 10 months ago
0
SafeLine WAF now supports updating SSL certificates through file upload.
For details, see: https://docs.waf.chaitin.com/reference/articles/ssl-update