Replies: 1 comment 2 replies
-
Yes, port 80 is required by the domain validation that is done by Let's Encrypt. It's not a limitation of the plugin but of the HTTP-01 challenge that is fulfilled for Let's Encrypt in order to retrieve a certificate. Editing NAT and triggering certificate renewal manually is not convenent but that would work. |
Beta Was this translation helpful? Give feedback.
2 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I have 2 Esxi's on my network, both reachable from the Internet via 1 external IP address and 2 dedicated external IP-ports, then NATed to their respective internal IP adresses on port 443. I only have that 1 external IP address. Does this plugin require the use of external port 80 when renewing the certificate? Or can I specify what external port to use for the challenge and simply set up a permanent NAT in the Firewall? Alternatively, can I disable auto-renew, and renew the certificate manually, after having edited NAT each time?
Beta Was this translation helpful? Give feedback.
All reactions