!MthpOIxqJhTgrMNxDS:nixos.org

NixOS ACME / LetsEncrypt

86 Members
Another day, another cert renewal39 Servers

Load older messages


SenderMessageTime
19 Oct 2024
@k900:0upti.meK900Not DuckDNS15:51:07
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)no, they used DuckDNS15:51:26
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I also own a domain that I manage using cloudflare, could i use it for my homelab and my website at the same time?15:51:50
@k900:0upti.meK900Yes15:51:54
@k900:0upti.meK900They used DuckDNS, and then used Cloudflare to provide a CNAME15:52:03
@k900:0upti.meK900And get a certificate for that15:52:07
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)Can you help me, because I don't have experience with this kind of things. so, I will create: A record -> homelab -> 192.168.1.6 CNAME record -> *.homelab -> 192.168.1.615:53:50
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)is this correct?15:53:53
@k900:0upti.meK900 Do you literally want your domain name to be homelab? 15:54:39
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)no15:54:46
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)homelab.nakibrayan.com15:54:50
@k900:0upti.meK900If you have a public domain, I would generally recommend just setting up your resources as subdomains of that15:54:56
@k900:0upti.meK900And then you can use normal ACME stuff with a DNS challenge, even without a wildcard15:55:12
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I want my nextcloud instance to be under, nextcloud.homelab.nakibrayan.com, is this setup possible?15:55:57
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)only in my lan15:56:06
@k900:0upti.meK900Yes15:56:10
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)how?15:56:25
@k900:0upti.meK900You can set up your LAN's DNS server to resolve that15:56:27
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I use mullvad DNS in my PCs and Phones15:57:20
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I can't set a local dns record15:57:32
@k900:0upti.meK900Then you can set it to resolve to whatever internal address you want it to be on Cloudflare15:57:57
@k900:0upti.meK900It will be resolvable publiclyw15:58:03
@k900:0upti.meK900* It will be resolvable publicly15:58:04
@k900:0upti.meK900But it will resolve to 192.168.1.6 or whatever15:58:15
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I made that before, I added an A record in cloudflare dns that points to 192.168.1.6, but in all my browsers and devices said that the cert is not trusted, why is that?16:00:01
@nakibrayan:matrix.imRayan Nakib (ريان نقيب) * I made that before, I added an A record in cloudflare dns that points to 192.168.1.6, but all my browsers and devices said that the cert is not trusted, why is that?16:00:31
@k900:0upti.meK900Presumably because the cert was for the wrong domain name16:00:40
@k900:0upti.meK900Or self-signed16:00:42
@k900:0upti.meK900Or both16:00:44
@nakibrayan:matrix.imRayan Nakib (ريان نقيب)I will retry, and see16:00:57

Show newer messages


Back to Room ListRoom Version: 6