Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
self-signed-certs [2018/11/04 09:56]
Robbie Ferguson
self-signed-certs [2019/02/04 11:32] (current)
Line 28: Line 28:
  
 You need to remove the old certificates from your browser, restart the browser, and try again. You need to remove the old certificates from your browser, restart the browser, and try again.
 +
 +====Why not use Let's Encrypt?​====
 +
 +Let's Encrypt (and other certificate authorities) require the server be web-accessible so they can respond to challenges that prove the identity of the server. In order to utilize a service such as Let's Encrypt, your NEMS Linux server would have to be hosted on an FQDN and be web-accessible. I recommend against this since it's an attack vector that is completely unnecessary. The only advantage a CA gives you is trust, but you already trust your NEMS server as you are accessing it on a local IP.
  
 ====It'​s still not working.==== ====It'​s still not working.====
  • self-signed-certs.txt
  • Last modified: 2019/02/04 11:32
  • (external edit)