letsencrypt

  1. D

    Sync issues after Lets Encrypt Renewal

    Hi all, I have an issue where whenever my 2 node PMG cluster renews the certificates the cluster stops syncing. On the master I get this: pmgcm status NAME(CID)--------------IPADDRESS----ROLE-STATE---------UPTIME---LOAD----MEM---DISK swarmx1(1) 192.168.11.218 master A 44 days...
  2. H

    [SOLVED] Letsencrypt und Webinterface

    Ich benutzer Proxmox 6.2 Ich habe ein datacenter mit nur einem Node. Ich habe via Letsencrypt für diesen Node ein Zertifikat besorgt. das Zertifikat ist im Node hinterlegt (siehe Unbenannt.PNG) Wie kann ich nun via https auf das Datacenter zugreifen? Aktuell wird die Verbindung immer noch als...
  3. P

    Nginx and regenerate ACME letsencrypt certificates

    Hello. I configured Nginx according to this instruction. Everything works great. It has become much more convenient. But the following question arose: ngnix is blocking ports 80 and 443 to obtain letsencrypt certificates. In order to regenerate the certificates, I had to manually stop nginx, get...
  4. P

    Wildcard certificate

    I'm trying to obtain wildcard certificate using new features in Proxmox 6.2, however, the GUI does not accept my input. Am I doing anything wrong?
  5. A

    Promox 6.2 ACME DNS Digital Ocean - Seems Broken?

    Trying out the new DNS Challenge and the UI appears to be missing something. For some of the plugins you get vendor specific fields to fill out but if you pick "dgon" all you get is a box called "API Data:" with no details on how your supposed to fill it out. So far I've tried just putting my...
  6. L

    [SOLVED] pvenode how to accept tos

    Hi, I try to get LE certs for my proxmox node. I cant find a way to accept the LE tos in my script. how do I accept the tos without manual pushing "y" in terminal? pvenode acme account register default mail@domain.tld --directory https://acme-staging-v02.api.letsencrypt.org/directory...
  7. S

    [SOLVED] Network connection fails on api.letsencrypt.org

    Hi Members, I'm a System Administrator (Linux) and use Proxmox for private testing and development. After my last "apt upgrade" I tried to renew my letsencrypt certificates and got a network connection error for the subdomains of letsencrypt.org. I'm not using letsencrypt with Proxmox...
  8. R

    [SOLVED] SMTPD Banner Mail Gateway Cluster / Promox VE LXC Container PMG 6.0

    Hello Everyone, I have now two Proxmox Mail Gateways in a Cluster. Now I would like to have two different SMTPD Banners, one for each machine. (PMG Mailin01 and PMG Mailin02). If i change it on one machine the second machine have the same SMTPD Banner. If I edit main.cf changes will override by...
  9. B

    [SOLVED] ACME: Error validating challenge

    Hi. I'm trying to order a certificate using the ACME GUI and I keep running into an error when validating the challenge. Loading ACME account details Placing ACME order Order URL: [REDACTED] Getting authorization details from '[REDACTED]' ... pending! Setting up webserver Triggering validation...
  10. J

    Lets Encrypt not renewing

    Hi, I have Lets Encrypt setup with auto renewal, it has been working fine until now with the error below. Task viewer: SRV - Renew Certificate OutputStatus Stop Loading ACME account details Placing ACME order TASK ERROR: Error: POST to https://acme-v02.api.letsencrypt.org/acme/new-order {...
  11. N

    Letsencrypt trouble to authenticate (Proxmox 5.1)

    Hello all, I have problems when installing certificate ( Letsencrypt ) from my proxmox, the problems is : Cleaning up challenges Problem binding to port 80: Could not bind to IPv4 or IPv6. i was open the port 80 to make it sure that can communicate with my public ip : root@pve:/var/log#...
  12. B

    LetsEncrypt Certs with multiple VMs

    Hi all, First post here so if this is not the proper way to asking or location please excuse my ignorance. Background: Been using proxmox on a poweredge server I had recently bought and now i'm looking to turn my entire system over to this box. However my current system uses certificates...
  13. G

    PVE 5.2 Lets Encrypt: TASK ERROR: validating challenge failed

    I was trying to figure out the new letsencrypt integration, and couldn't get it to work... Then i noticed this: COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME task\x20U 9499 root 3u IPv4 76078 0t0 TCP *:80 (LISTEN) task\x20U 9504 root 3u IPv4 76078 0t0 TCP *:80...
  14. O

    [SOLVED] Can't get pvenode acme to work

    Brand new isntall of Proxmox, latest 5.x as of right now. Followed this guide: https://pve.proxmox.com/wiki/Certificate_Management and everything worked as detailed in that guide except when accessing my proxmox GUI via https://mysub.deomain.tld:8006 my browser still shows the old fake...
  15. M

    Letsencrypt test with staging, but how to switch to live?

    I have registered an account at the staging, so can only acquire a certificate from staging. I do not see an option to change the registration to live. Is there one? Or is the conf file somewhere with the registration so I can delete it?
  16. S

    proxmox certificates domain cant start with number

    Hello, Why in proxmox I can't register domain starting with number ? I see error "acme: invalid format - format error acme.domains: invalid format - value does not look like a valid domain name at /usr/share/perl5/PVE/NodeConfig.pm line 19." After changing lable from: my $label =...
  17. M

    [SOLVED] Letsencrypt request: SSLError: ("bad handshake: Error([('SSL routines', 'ssl3_read_bytes', 'tlsv1 al

    Hey, I am running the script from IT Niels to update my LetsEncrypt certs. I successfully obtained certs before, but now ran into this cryptic error: Disable firewall Updating certificate Saving debug log to /var/log/letsencrypt/letsencrypt.log An unexpected error occurred: SSLError: ("bad...
  18. X

    acme-challenge Timeout Port 80 open

    Dear Forum I am trying to renew the certificate and get: ipxxx.ip-xxx-xx-xx.eu:Verify error:Fetching http://ipxxx.ip-xxx-xx-xx.eu/.well-known/acme-challenge/syrjTXdNjAXJFP1QdmVLAajXcodc7SykF6WPrYbkCRI: Timeout Service nginx ist started and port 80 is open.
  19. C

    Proxmox Mail Gateway + Letsencrypt

    [MODERATOR EDIT]: See https://forum.proxmox.com/threads/how-to-lets-encrypt-and-pmg.41493/ instead! A tiny recipe to use letsencrypt certificates with Proxmox Mail Gateway 5.0 Previously update / dist-upgrade your host and create a backup of /etc folder Install letsencrypt certbot apt-get...
  20. H

    What's wrong about replacing /etc/pve/local/pve-ssl.* ?

    man pveproxy says this: Warning Do not replace the automatically generated node certificate files in /etc/pve/local/pve-ssl.pem and etc/pve/local/pve-ssl.key What's so wrong about replacing original snakeoil key+cert with eg. letsencrypt one? It seemed to work for me. I modified my...

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!