Lets Encrypt Port 80

Afox

Renowned Member
Dec 18, 2014
257
12
83
Hello,

to feel more secure I have the following question about Port 80 that has to be open for LE cert creation and renewal:
Is there a service constantly listening on that port or just at the very moment when creation or renewal takes place?

I have the same question for the PVE LE implementation but assume that both the PMG and the PVE behave the same.

Thanks for any answer.

Best regards,

Afox
 
Is there a service constantly listening on that port or just at the very moment when creation or renewal takes place?
only when the challenge verification happens.

you can try it out - by registering an account and getting a certificate via http-01 challenge - once done - check the `ss -tlnp` output - port 80 should not be LISTENING

I hope this helps!
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!