nextcloud / all-in-one

📦 The official Nextcloud installation method. Provides easy deployment and maintenance with most features included in this one Nextcloud instance.
https://hub.docker.com/r/nextcloud/all-in-one
GNU Affero General Public License v3.0
4.63k stars 555 forks source link

readme: Add section `Securing the AIO interface from unauthorized ACME challenges` #4883

Closed Surfict closed 2 weeks ago

Surfict commented 2 weeks ago

Follow-up of this discussion

Why?

By default, Caddy is open to receiving DNS challenges for arbitrary hostnames from anyone on the internet. This add a description of the problem and its consequences, and solutions to fix it.