all repos — homestead @ 5bec0474e96fb75c7374908dea6a2183387203f8

Code for my website

tls: use only DNS01 challenges

Alan Pearce
commit

5bec0474e96fb75c7374908dea6a2183387203f8

parent

427177e77191acd97d8491b7f4e1cda22eafbf1e

1 file changed, 6 insertions(+), 4 deletions(-)

jump to
M internal/server/tls.gointernal/server/tls.go
@@ -83,10 +83,12 @@ return errors.Wrap(err, "could not parse PowerDNS ACME config")
} issuer = certmagic.NewACMEIssuer(cfg, certmagic.ACMEIssuer{ - CA: certmagic.LetsEncryptProductionCA, - Email: s.config.Email, - Agreed: true, - Logger: certmagic.Default.Logger, + CA: certmagic.LetsEncryptProductionCA, + Email: s.config.Email, + Agreed: true, + Logger: certmagic.Default.Logger, + DisableHTTPChallenge: true, + DisableTLSALPNChallenge: true, DNS01Solver: &certmagic.DNS01Solver{ DNSManager: certmagic.DNSManager{ DNSProvider: pdns,