!MthpOIxqJhTgrMNxDS:nixos.org

NixOS ACME / LetsEncrypt

104 Members
Another day, another cert renewal43 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
5 Oct 2023
@os:matrix.flyingcircus.ioosnyx (he/him)I read (haven't tried myself) that nginx crashes when the config references nonexisting cert files. This is probably one of the main reasons for the existence of nginx-config-reload, as it has a condition gurad that checks for the existence of cert files.14:13:27
@m1cr0man:m1cr0man.comm1cr0manYes indeed. I think Apache silently fails here, and by the time a request is made selfsinged has run. I don't remember how nginx does it. Actually - bigger point. The test suite is passing 😛 how? I'm pretty sure I have a test for your exact scenario14:14:04
@os:matrix.flyingcircus.ioosnyx (he/him)I've done a workaround for our own fork of the nginx module now. As we plan to move towards upstream anyways, I'll probably want to get this fixed there as well and will soon-ish try to write a reproducer in the acme tests. Shouldn't be that hard.14:15:18
@os:matrix.flyingcircus.ioosnyx (he/him)
In reply to @m1cr0man:m1cr0man.com
Yes indeed. I think Apache silently fails here, and by the time a request is made selfsinged has run. I don't remember how nginx does it.


Actually - bigger point. The test suite is passing 😛 how? I'm pretty sure I have a test for your exact scenario
But yeah, I should have a look at ALL the tests.
14:15:59
@os:matrix.flyingcircus.ioosnyx (he/him)I mainly wanted to rule out a "Yes we know it's broken at switch time, but as long as it quickly converges to non-broken due to service retries we're fine with it".14:17:42
@m1cr0man:m1cr0man.comm1cr0manYeah no, it shouldn't be broken at all 😛14:24:03
@m1cr0man:m1cr0man.comm1cr0manAnd maybe it is broken and the test suite is sugar coating it with retries, but I don't have time to check right this moment14:24:39
@os:matrix.flyingcircus.ioosnyx (he/him)I'll investigate further, thanks.15:52:28
7 Oct 2023
@woobilicious:matrix.orgwoobilicious joined the room.06:00:43
12 Oct 2023
@ajs124:ajs124.deajs124 changed their profile picture.21:33:52
22 Oct 2023
@janik0:matrix.org@janik0:matrix.org joined the room.21:04:46
23 Oct 2023
@globin:toznenetl.chatglobin joined the room.09:52:39
@globin:toznenetl.chatglobin set a profile picture.14:27:53

Show newer messages


Back to Room ListRoom Version: 6