Let's Encrypt Subdomains Certificate for Proxmox

shaini

Member
Aug 13, 2022
35
2
8
Hi, We would like to obtain a certificate for Proxmox and some VMs running on Proxmox from outside via our domain.

How can we have these certificates created by "Let's Encrypt"? e.g. for these subdomains Proxmox "proxmox.domain.com" and the VM "ubuntu.domain.com" So far we always get a DNS error message with Let's Encrypt.

Port 80 and 443 are open to Proxmox. Would be grateful for hints, because Let's Encrypt only has limited attempts.

LG
 
You opened the thread in the Mail Gateway forum - was this intentional? (since you're talking about VMs I assume it was meant for the Proxmox VE forum)...

In any case - if you want to get one certificate for multiple DNS names, which point to different IP addresses you (usually) need to use a DNS plugin for verification - with the http challenge the Let's encrypt ACME server tries to connect to proxmox.domain.com with the challenge and then to ubuntu.domain.com (and this one will not have the correct challenge response waiting on port 80 at /.well-known/acme/


I hope this explains it.

check out the reference documentation on certificates:
https://pve.proxmox.com/pve-docs/chapter-sysadmin.html#sysadmin_certs_get_trusted_acme_cert

It might be easier to just setup some other acme client (certbot or acme.sh for example) on the ubuntu machine.
 
Thanks for your answer!

That was an accident, please move the thread to the correct section.

Thanks!
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!