steiza / docstore

For any civics-minded organization that needs a simple place to host documents publicly
http://a2docs.org/
7 stars 4 forks source link

HTTPS support for a2docs.org #23

Closed vielmetti closed 5 years ago

vielmetti commented 8 years ago

Some notes on a transition:

We have an old URL (a2docs.org) and a new URL (a2docs.aadl.org). It would be good to have a plan to consolidate the two, and I think that the surviving URL is the .aadl.org domain.

I suspect that the long term answer is to transfer the a2docs.org domain handling to an nginx configuration which does whatever necessary domain mapping.

The main reason for wanting this is to ensure that all of the old links to a2docs.org that are in Arborwiki still work. An alternative plan is to identify all of those pages that have those links one by one and fix them, and then retire the old a2docs.org name entirely.

eby commented 8 years ago

Any specific reason for retiring the domain? AADL could likely easily take it over and keep it registered.

vielmetti commented 8 years ago

If AADL wants to take over the domain I think that would be all OK with everyone involved.

eby commented 8 years ago

Does that work for you @chairkicker ? I see you are listed in the whois.

I can DM you on twitter to work out details or email me at eby [at] aadl [dot] org

ghost commented 8 years ago

@eby that'd be great by me. Let's hash out details in email. Thank you!

eby commented 8 years ago

This has completed finally this morning. It is still propagating but appears google picked it up quick. Right now I have it on HTTP as let's encrypt is giving me some issues. Will try to get to the SSL cert later today or tomorrow and put it back on SSL.

I tested some links on arborwiki and it seems to work. Let me know if any redirects fail. Still tweaking the configs.

vielmetti commented 8 years ago

I'm seeing the same thing that @eby is seeing with HTTPS, the Chrome error I see is below when I go to https://a2docs.org.

screen shot 2016-06-01 at 11 32 24 am

I'll spot check Arborwiki - I think all of those original links were http not https.

eby commented 8 years ago

Yeah http is fine and all links should be http that are out there. https://a2docs.aadl.org is redirecting to http for now until I get time to register.

cdzombak commented 5 years ago

@vielmetti / @eby, can this ticket be closed out now?

vielmetti commented 5 years ago

On Firefox, when I visit https://a2docs.org, I still get

Warning: Potential Security Risk Ahead

cdzombak commented 5 years ago

oh, I skimmed the ticket too quickly 😞 disregard!

vielmetti commented 5 years ago

I updated the subject line to better reflect the current state and help people who might be skimming get the gist faster.

Perhaps what, Let's Encrypt?

eby commented 5 years ago

I'll work on this and try to get things done tomorrow.

eby commented 5 years ago

Sorry for the delay on this. I'm in the process of doing a lot of juggling to take advantage of a new generator (thanks for nothing DTE). In the meantime I went ahead and went full @vielmetti on this despite Works on Arm not being weekly right now.

ssllabs

I had some brief ipv6 config issue with nginx so if you had 404s or weird redirects it should hopefully be fixed.

Let me know if any problems and hopefully this can finally be closed.

As an aside with this I have more s3 syncing going on and can potentially do some IAM access for others to that bucket if/when people decide they want to do pdf analysis/etc.

cdzombak commented 5 years ago

Made some quick checks and it looks good from here (over IPv4). Thanks, @eby 🍻

vielmetti commented 5 years ago

Looks good to me!