techhub.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A hub primarily for passionate technologists, but everyone is welcome

Administered by:

Server stats:

5.2K
active users

#zerossl

1 post1 participant0 posts today
Heals :heart_nb:<p>I recently started to replace <a href="https://indiepocalypse.social/tags/nginx" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nginx</span></a> with <span class="h-card" translate="no"><a href="https://infosec.exchange/@caddy" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>caddy</span></a></span> and it's as satisfying as it is scary to replace a complex config that spans five included files and a total of about 400 lines with a single Caddyfile of around 80 lines. </p><p>And on top of that <a href="https://indiepocalypse.social/tags/Caddy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Caddy</span></a> also made certbot redundant as it takes care of fetching and renewing the tls certs from <a href="https://indiepocalypse.social/tags/LetsEncrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LetsEncrypt</span></a> and keeps a <a href="https://indiepocalypse.social/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> backup for all of my domains. </p><p>I think I'm in love..</p>
Spooky Services<p>🔒 Secure your Site!</p><p>Spookhost now supports Let's Encrypt and ZeroSSL for your SSL certificates! 🎉 Head to our Client Portal to get started. We're still working on some features, but we're excited to bring you this update! <a href="https://mastodon.social/tags/Spookhost" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Spookhost</span></a> <a href="https://mastodon.social/tags/SSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SSL</span></a> <a href="https://mastodon.social/tags/LetsEncrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LetsEncrypt</span></a> <a href="https://mastodon.social/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> <a href="https://mastodon.social/tags/WebHosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebHosting</span></a> <a href="https://mastodon.social/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://mastodon.social/tags/NewFeatures" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NewFeatures</span></a> <a href="https://mastodon.social/tags/HappyHosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HappyHosting</span></a> 👻🚀</p><p>Spookhost: <a href="https://go.spookhost.xyz/home-md" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">go.spookhost.xyz/home-md</span><span class="invisible"></span></a></p><p>Learn More:<br><a href="https://hub.spookysrv.com/post/6-announcing-experimental-support-for-acme-tls-cas/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hub.spookysrv.com/post/6-annou</span><span class="invisible">ncing-experimental-support-for-acme-tls-cas/</span></a></p>
Elias Probst<p><span class="h-card" translate="no"><a href="https://mastodon.social/@jpmens" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>jpmens</span></a></span> what are other <a href="https://mastodon.social/tags/ACME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ACME</span></a> providers except of <span class="h-card" translate="no"><a href="https://infosec.exchange/@letsencrypt" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>letsencrypt</span></a></span> and where are they located?</p><p><span class="h-card" translate="no"><a href="https://mastodon.social/@european_alternatives" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>european_alternatives</span></a></span> lists only one (<a href="https://mastodon.social/tags/BuypassGoSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BuypassGoSSL</span></a>) so far:<br><a href="https://european-alternatives.eu/category/acme-ssl-certificate-providers" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">european-alternatives.eu/categ</span><span class="invisible">ory/acme-ssl-certificate-providers</span></a></p><p><a href="https://mastodon.social/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> itself seems to be Austria-based, but is a subsidiary of HID Global (Texas, US) which again is a subsidiary of ASSA Abloy (Sweden), so it being independent from US-shenanigans is not quite clear.</p><p>We should probably start shipping a "ca-certififcates-eu" package in distributions...</p>
Miyuru Sankalpa<p>Someone removed the IPv6 address on acme.zerossl.com and my renewals did not work.</p><p>If anyone face this issue use 2a0e:ac00:c7:d450::5bc7:d450 and it works.</p><p>Got the IP from <a href="https://github.com/acmesh-official/acme.sh/issues/4088" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/acmesh-official/acm</span><span class="invisible">e.sh/issues/4088</span></a></p><p><a href="https://ipv6.social/tags/IPv6" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IPv6</span></a> <a href="https://ipv6.social/tags/ssl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ssl</span></a> <a href="https://ipv6.social/tags/acme" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>acme</span></a> <a href="https://ipv6.social/tags/zerossl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerossl</span></a></p>
jose<p>finally my <a href="https://mastodon.online/tags/nextcloud" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nextcloud</span></a> deploy &amp; provisioning project is done and deployed managed by using <a href="https://mastodon.online/tags/packer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>packer</span></a> <a href="https://mastodon.online/tags/terraform" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>terraform</span></a> <a href="https://mastodon.online/tags/hetzner" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hetzner</span></a> <a href="https://mastodon.online/tags/ansible" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ansible</span></a> <a href="https://mastodon.online/tags/RockyLinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RockyLinux</span></a> <a href="https://mastodon.online/tags/GitLabCICD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GitLabCICD</span></a> <a href="https://mastodon.online/tags/backup" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>backup</span></a> + <a href="https://mastodon.online/tags/restore" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>restore</span></a> later I'll change cert from <a href="https://mastodon.online/tags/letsencrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>letsencrypt</span></a> to <a href="https://mastodon.online/tags/zerossl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerossl</span></a> provider :catjam:</p>
René Moser (resmo) レネ<p>So, 80-90% of the web is encrypted nowadays. This is wild. Many thanks to <a href="https://mstdn.social/tags/letsencrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>letsencrypt</span></a> and others <a href="https://mstdn.social/tags/acme" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>acme</span></a> providers like <a href="https://mstdn.social/tags/zerossl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerossl</span></a> </p><p>Can we now go ahead and also sign / encrypt email with free s/mime?</p>
data0<p><a href="https://indieweb.social/tags/TIL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TIL</span></a> <a href="https://indieweb.social/tags/Caddy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Caddy</span></a> is not only a great general-purpose <a href="https://indieweb.social/tags/http" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>http</span></a> server with automatic <a href="https://indieweb.social/tags/https" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>https</span></a> handling (via <a href="https://indieweb.social/tags/letsencrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>letsencrypt</span></a> and <a href="https://indieweb.social/tags/zerossl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerossl</span></a>). It also has a layer 4 module that can make it terminate <a href="https://indieweb.social/tags/tls" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tls</span></a> for arbitrary <a href="https://indieweb.social/tags/tcp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tcp</span></a> services and still handle certificates automatically. I just used it to tls-terminate a <a href="https://indieweb.social/tags/redis" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>redis</span></a> db and it works like a charm!</p><p><a href="https://github.com/mholt/caddy-l4" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">github.com/mholt/caddy-l4</span><span class="invisible"></span></a></p>
christophe<p><a href="https://toot.cafe/tags/Letsencrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Letsencrypt</span></a> is handy.<br>Well, no.<br>Letsencrypt is the unrivaled corner stone for a free web.</p><p>However, it lacks the ability to generate certificates for IP addresses without domain names.</p><p><a href="https://toot.cafe/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> permits this in its free tier, and works quite perfectly.</p>
Attractive Nuisance<p><span class="h-card" translate="no"><a href="https://mastodon.social/@rmbolger" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>rmbolger</span></a></span> <span class="h-card" translate="no"><a href="https://berlin.social/@ainmosni" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ainmosni</span></a></span> Hmm, <a href="https://tech.lgbt/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> might be worth a look for <a href="https://tech.lgbt/tags/TLS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TLS</span></a> certificates, they seem to be based in Germany.</p><p>And it looks like someone's done the the hard work of integrating it with <a href="https://tech.lgbt/tags/Traefik" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Traefik</span></a>: <a href="https://www.spad.uk/posts/get-free-zerossl-certs-using-traefik/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">spad.uk/posts/get-free-zerossl</span><span class="invisible">-certs-using-traefik/</span></a></p>
:mima_rule: Mima-sama<p><span>Is </span><a href="https://makai.chaotic.ninja/tags/ZeroSSL" rel="nofollow noopener noreferrer" target="_blank">#ZeroSSL</a><span> broken right now? I've been waiting for my renewed </span><a href="https://makai.chaotic.ninja/tags/TLS" rel="nofollow noopener noreferrer" target="_blank">#TLS</a><span> / </span><a href="https://makai.chaotic.ninja/tags/SSL" rel="nofollow noopener noreferrer" target="_blank">#SSL</a><span> </span><a href="https://makai.chaotic.ninja/tags/certificate" rel="nofollow noopener noreferrer" target="_blank">#certificate</a><span> to be issued for hours </span>​:SanaeConfuzzled:​<span><br><br></span><a href="https://makai.chaotic.ninja/tags/letsencrypt" rel="nofollow noopener noreferrer" target="_blank">#letsencrypt</a><span> </span><a href="https://makai.chaotic.ninja/tags/HTTPS" rel="nofollow noopener noreferrer" target="_blank">#HTTPS</a><span> </span><a href="https://makai.chaotic.ninja/tags/ACME" rel="nofollow noopener noreferrer" target="_blank">#ACME</a></p>
Linuxiac<p>ZeroSSL: How to Secure Your Website with a Free SSL Certificate<br><a href="https://linuxiac.com/zerossl-how-to-install-ssl-certificate/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">linuxiac.com/zerossl-how-to-in</span><span class="invisible">stall-ssl-certificate/</span></a></p><p><a href="https://mastodon.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a> <a href="https://mastodon.social/tags/opensource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensource</span></a> <a href="https://mastodon.social/tags/zerossl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerossl</span></a> <a href="https://mastodon.social/tags/ssl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ssl</span></a> <a href="https://mastodon.social/tags/certificate" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>certificate</span></a> <a href="https://mastodon.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
M. Hamzah Khan<p>Is there any reason you might want to use <a href="https://intahnet.co.uk/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> or Google Trust Services instead of <a href="https://intahnet.co.uk/tags/LetsEncrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LetsEncrypt</span></a>? <a href="https://intahnet.co.uk/tags/ACME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ACME</span></a></p>
kurtseifried (he/him)<p>If you know anyone using <a href="https://mastodon.social/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> they're at risk of having their private cert keys stolen: ZeroSSL: XSS leading to session hijacking, stealing a private key (and a password hash) <a href="https://groups.google.com/a/ccadb.org/g/public/c/kqtoGeEv5Fc" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">groups.google.com/a/ccadb.org/</span><span class="invisible">g/public/c/kqtoGeEv5Fc</span></a></p>
Catfluoride<p>Took me a while, but I finally finished my first tutorial. Hope it's useful for someone:</p><p>Self-hosted Adguard Home, DoT and SSL certificate on Android.</p><p><a href="https://blog.catfluori.de/2023/01/13/self-hosted-adguard-home-dot-and-ssl-certificate-on-android/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.catfluori.de/2023/01/13/s</span><span class="invisible">elf-hosted-adguard-home-dot-and-ssl-certificate-on-android/</span></a></p><p>Feel free to comment on it, to report issues and suggest improvements. Enjoy :-)</p><p><a href="https://mastodon.social/tags/Android" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Android</span></a> <a href="https://mastodon.social/tags/AdGuardHome" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AdGuardHome</span></a> <a href="https://mastodon.social/tags/DNS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNS</span></a> <a href="https://mastodon.social/tags/DNS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNS</span></a>-over-TLS <a href="https://mastodon.social/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> <a href="https://mastodon.social/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a></p>
unclemarc<p>Ok...I think I have a cert solution. <a href="https://social.undrground.org/tags/ZeroSSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZeroSSL</span></a> seems to be an option that will let me use a redirected port 80. BUT I have to start over. Sigh.</p>