Skip to content

not generate_initial_cert as letsencrypt_user#34

Open
flyerhzm wants to merge 1 commit intoandreaswolf:masterfrom
Prepsmith:feature/fix-permission-to-generate-initial-cert
Open

not generate_initial_cert as letsencrypt_user#34
flyerhzm wants to merge 1 commit intoandreaswolf:masterfrom
Prepsmith:feature/fix-permission-to-generate-initial-cert

Conversation

@flyerhzm
Copy link
Copy Markdown

letsencrypt_user does not have permission to generate initial cert, it required password

@andreaswolf
Copy link
Copy Markdown
Owner

Thanks for the PR. I would however rather not merge this, as I think this is an error in your setup: The certificates should, for security reasons, be generated by a user with the least possible privilege (i.e. especially not root, who usually executes Ansible).

On my systems, it works to generate the certificates in a special folder for Let’s encrypt (/etc/ssl/letsencrypt, on Ubuntu). Would that be possible in your setup?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants