今天主要介绍一款好用的免费域名证书软件 -- lets-encrypt 。 使用场景为aliyun SLB(类nginx),PEM格式SSL证书https://certbot.eff.org/lets-encrypt/centosrhel7-nginx。
下载到本地 wget https://raw.githubusercontent.com/carpliyz/Lets-encrypt/master/letsencrypt.conf wget https ://raw.githubusercontent.com/carpliyz/Lets-encrypt/master/letsencrypt.sh chmod +x letsencrypt.sh 修改配置文件
1 => 'eallion.com', ), 如果需要配置 https: Let’s Encrypt 证书 sudo nextcloud.enable-https lets-encrypt
下载到本地 wget https://raw.githubusercontent.com/xdtianyu/scripts/master/lets-encrypt/letsencrypt.conf wget https://raw.githubusercontent.com/xdtianyu/scripts/master/lets-encrypt/letsencrypt.sh chmod +x letsencrypt.sh
4、参考文献 https://certbot.eff.org/lets-encrypt/centosrhel7-nginx
我们先打开其官网,整体浏览下 https://certbot.eff.org/lets-encrypt/centos6-nginx 我们可以看到,想使用 Certbot,需要一些条件 ?
我直接参考了官方文档上关于在CentOS 7上用nginx来让网站支持https的教程 https://certbot.eff.org/lets-encrypt/centosrhel7-nginx 1.
github.com/xdtianyu/sc… 下载项目到本地 $ wget https://raw.githubusercontent.com/xdtianyu/scripts/master/lets-encrypt /letsencrypt.conf $ wget https://raw.githubusercontent.com/xdtianyu/scripts/master/lets-encrypt/letsencrypt.sh
先确保你的域名已经成功解析到你的VPS主机上,然后执行命令:sudo nextcloud.enable-https lets-encrypt #安装Let's Encrypt SSL#如果你想使用自己的证书
因此没有人能够劫持安装: sudo ufw allow "WWW Full" 接下来,输入以下内容来请求Let's Encrypt证书: sudo -i nextcloud.enable-https lets-encrypt
Nextcloud,执行以下命令可以从Let's Encrypt申请证书,申请成功后将重启容器内的Apache实例以立即实施SSL #方式1:let's加密SSL nextcloud.enable-https lets-encrypt