新聞中心
SSL證書(shū)是數(shù)字證書(shū)的一種,類(lèi)似于駕駛證、護(hù)照和營(yíng)業(yè)執(zhí)照的電子副本。因?yàn)榕渲迷诜?wù)器上,也稱(chēng)為SSL服務(wù)器證書(shū)。SSL 證書(shū)就是遵守 SSL協(xié)議,由受信任的數(shù)字證書(shū)頒發(fā)機(jī)構(gòu)CA,在驗(yàn)證服務(wù)器身份后頒發(fā),具有服務(wù)器身份驗(yàn)證和數(shù)據(jù)傳輸加密功能。我們介紹 一下letsencrypt的免費(fèi)SSL證書(shū)續(xù)簽及解決辦法

成都創(chuàng)新互聯(lián)公司專(zhuān)注于新晃企業(yè)網(wǎng)站建設(shè),響應(yīng)式網(wǎng)站設(shè)計(jì),商城網(wǎng)站定制開(kāi)發(fā)。新晃網(wǎng)站建設(shè)公司,為新晃等地區(qū)提供建站服務(wù)。全流程定制制作,專(zhuān)業(yè)設(shè)計(jì),全程項(xiàng)目跟蹤,成都創(chuàng)新互聯(lián)公司專(zhuān)業(yè)和態(tài)度為您提供的服務(wù)
正常letsencrypt的免費(fèi)SSL證書(shū)續(xù)簽, 常常需要停止nginx
步驟:
就是先停nginx服務(wù),然后續(xù)簽操作,在服務(wù)器上即:
1. 直接續(xù)簽證書(shū)
find / -name "certbot-auto"
/root/letsencrypt/certbot-auto
/root/certbot-auto
/root/letsencrypt/certbot-auto/certbot-auto renew --force-renew --no-self-upgrade
--force-renew 強(qiáng)制更新
--no-self-upgrade 不更新 letsencrypt
2. 續(xù)簽證書(shū)失?。ㄖ匦伦?cè)證書(shū))
執(zhí)行: /root/letsencrypt/certbot-auto certonly --standalone --no-self-upgrade -d xxxxx.com
若執(zhí)行報(bào)以下錯(cuò)
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator standalone, Installer None
Obtaining a new certificate
Performing the following challenges:
http-01 challenge for xxxx.com
Cleaning up challenges
Problem binding to port 80: Could not bind to IPv4 or IPv6.
停止nginx
sudo /usr/sbin/nginx -s stop
啟動(dòng)nginx
nginx -c /etc/nginx/nginx.conf
nginx -s reload
最后
用2生成的新的 fullchain.pem 和privkey.pem 替換原來(lái)舊的,即可
cp /etc/letsencrypt/live/xxx.com-0001/fullchain.pem /etc/letsencrypt/live/xxx.com/fullchain.pem
cp /etc/letsencrypt/live/xxx.com-0001/privkey.pem /etc/letsencrypt/live/xxx.com/privkey.pem
sudo /usr/sbin/nginx -t
sudo /usr/sbin/nginx -s reload
訪問(wèn)網(wǎng)站, 可以看到證書(shū)已續(xù)簽 ??!
分享標(biāo)題:letsencrypt的免費(fèi)SSL證書(shū)續(xù)簽及解決方案
瀏覽地址:http://www.fisionsoft.com.cn/article/codoscd.html


咨詢(xún)
建站咨詢(xún)
