Closed HalosGhost closed 6 years ago
At the moment (as mentioned in #6), we are serving exclusively over HTTP.
So, it looks like we now have a reasonable option:
/.well-known/acme-challenge
https://halosgho.st
8080
80
nftables
8443
443
Auto-renewal has been enabled via 0368b7c.
That brings this issue to a close (though, we have not yet actually seen auto-renewal function, all indications are that it should work).
At the moment (as mentioned in #6), we are serving exclusively over HTTP.
So, it looks like we now have a reasonable option:
/.well-known/acme-challenge
https://halosgho.st
8080
and redirect traffic from80
withnftables
8443
(traffic redirected via varnish/hitch from443
using settings derived from mozilla's TLS config generator)