srvrco
13be6817b3
adding various updates / from issues to beta
8 years ago
srvrco
051eb8d105
adding SSH_OPTS (shellcheck)
8 years ago
srvrco
c946d42a12
adding SSH_OPTS as requested
8 years ago
srvrco
692920eec7
completed initial testing on acme-staging-v02.api.letsencrypt.org
8 years ago
srvrco
034ce54850
modifying debugs
8 years ago
srvrco
fb9c870377
updateing getssl for APIv2
8 years ago
srvrco
394a350496
draft version to work with APIv2
8 years ago
Paul B. Henson
358244c9e9
Allow dns checks to deal with CNAME records
Some environments might delegate dns validation to a subzone by using CNAME records. These changes allow getssl to validate dns updates when the verification name is a CNAME to the TXT record rather than a TXT record itself.
7 years ago
Emily Karisch
70f5443a16
Case insensitive processing of agreement url because of HTTP/2
Fixes #425
6 years ago
Emily Karisch
867ae36e96
Fix changelog date
6 years ago
Emily Karisch
3f0b749e2b
Check curl version if it supports the --http1.1 flag
Co-authored-by: Robert Eden <rmeden@yahoo.com>
6 years ago
Emily Karisch
a31e4fafd9
Use HTTP 1.1 as workaround atm
Fixes #423
6 years ago
In/Progress
3a379ecebb
Update Revision history as contribution guidelines suggest
7 years ago
In/Progress
f7324f35d7
Add documentation for ACL transfer via davs
7 years ago
In/Progress
0f9e831b3a
Allow file copying via davs (WebDAV over HTTPS)
7 years ago
Josh Soref
84f87b54db
spelling: upgrading
8 years ago
Josh Soref
76b8897e9c
spelling: server
8 years ago
Josh Soref
a07e2a9757
spelling: secure
8 years ago
Josh Soref
8ce75abc3d
spelling: private
8 years ago
Josh Soref
bf96cb6d02
spelling: permission
8 years ago
Josh Soref
7b8f1b831f
spelling: mac os x
8 years ago
Josh Soref
71cbde40d8
spelling: macos
8 years ago
Josh Soref
401ba2e305
spelling: archive
8 years ago
Josh Soref
11f652dd63
spelling: allow
8 years ago
Josh Soref
398d1df99d
spelling: acme
8 years ago
Colin 't Hart
eb8290ee9a
Update getssl
Grammar fixes.
8 years ago
Scott Gustafson
69ef4ff80e
if using dig we need to check for either an SOA or A type record.
Signed-off-by: Scott Gustafson <scott@garlicsoftware.com>
9 years ago
Scott Gustafson
cbdf925839
moving dig to be the first command to check as nslookup is failing on ubuntu vm
Signed-off-by: Scott Gustafson <scott@garlicsoftware.com>
9 years ago
Yannic Haupenthal
d0447886c9
Add OCSP Must-Staple
This implements a new variable OCSP_MUST_STAPLE which adds the OCSP Must-Staple detail to the SAN section of the CSR.
If the openssl version is >= 1.1.0, one can also use "tlsfeature = status_request".
See [this blog post](https://scotthelme.co.uk/ocsp-must-staple/ ) for more details.
9 years ago
srvrco
cb7779102a
issue #243 additional compatibility with bash 3.0
9 years ago
srvrco
33f6eb9963
maintain compatibility with bash 3.0 Issue #243
9 years ago
srvrco
3dd1b35807
issue #232 use neutral locale for date formatting
9 years ago
srvrco
51f59b5276
issue #231 mingw bugfix and typos in debug messages
9 years ago
srvrco
df3285deee
bugfix - deleting csr ( #227 ) and check domain/private key different ( #228 )
9 years ago
srvrco
60e04aeeaa
added drill, dig or host as alternatives to nslookup
9 years ago
srvrco
7c8e517164
force renew if FORCE_RENEWAL file exists #214
9 years ago
srvrco
ed519319f7
Created check_config function to list all obvious config issues
9 years ago
srvrco
e9ec9067e8
add additional config checks
9 years ago
srvrco
0ef348b5e7
ignore expiry if upgrading from staging to live server
9 years ago
srvrco
c3f380e527
include key types in config check
9 years ago
srvrco
b901b9d3ec
dont loop over domains for DNS_ADD_COMMAND check
9 years ago
srvrco
f9696802e0
updated history
9 years ago
srvrco
0c519f52e0
add check config function
9 years ago
srvrco
d76f4952ea
small typo, and modified formatting
9 years ago
micheloe
b3988013e8
Added explicit sorting on old file versions
9 years ago
micheloe
c854baffd7
Added option to limit amount of old versions to keep (2.01)
9 years ago
srvrco
5e5d501082
stable release 2.00
9 years ago
micheloe
c0d6c8e962
tidied up upgrade tmpfile handling (1.95)
9 years ago
micheloe
e150ad067a
fix leftover tmpfiles in upgrade routine (1.94)
9 years ago
srvrco
9fc0928d33
update checks to work with openssl in FIPS mode (1.93)
9 years ago