command
module
Version:
v0.3.3
Opens a new window with list of versions in this module.
Published: Dec 25, 2024
License: GPL-3.0
Opens a new window with license information.
Imports: 14
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
README
¶
CertBot DANE hook
data:image/s3,"s3://crabby-images/80593/8059329682977982bbce7cc466d4f261c26f9cd1" alt="GoDoc"
Description
CertBot DANE hook is a post deployment hook for
certbot to update DANE records from
various DNS providers.
Like certbot-dns-google, the following permissions are needed:
- dns.changes.create
- dns.changes.get
- dns.managedZones.list
- dns.resourceRecordSets.create
- dns.resourceRecordSets.delete
- dns.resourceRecordSets.list
- dns.resourceRecordSets.update
Author
License
GNU General Public License, version 3
Documentation
¶
Cdh takes the domain names and path of the live certificate from certbot and
update related TLSA records on Google Cloud DNS.
The domain names are passed via the environment variable RENEWED_DOMAINS. The
path of the certificate is passed via RENEWED_LINEAGE.
Currently Cdh only supports DANE certificate usage 3 (DANE-EE), selector 1 1
(public key, SHA-256).
Usage:
cdh [flags]
The flags are:
-k string
path to the service account JSON key file
-z string
name of the DNS zone
Source Files
¶
Click to show internal directories.
Click to hide internal directories.