Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
undefined | Better HN
0 points
kuschku
6y ago
0 comments
Share
You can even just set NS records for _acme-challenge subdomain to your own DNS server.
And then have your acme client auth against that one.
No need for a new domain.
0 comments
default
newest
oldest
tyingq
6y ago
True, though running your own DNS server or paying for another DNS provider may be similar in effort or expense...as compared to a throwaway cheap TLD domain that comes with DNS.
kuschku
OP
6y ago
As it's a DNS server that only ever serves certificate validation requests, and doesn't need 100% uptime, a normal simple BIND or knot is good enough.
namibj
6y ago
I'd expect it to be built in to certbot like serverauth.
j
/
k
navigate · click thread line to collapse