18 มิ.ย. 2561

Let's Encrypt RouterOS / Mikrotik

CertBot Let's Encrypt

Install CertBot using official manuals https://certbot.eff.org/#ubuntuxenial-other
for Ubuntu 16.04apt update
apt install software-properties-common -y
add-apt-repository ppa:certbot/certbot
apt update
apt install certbot -y
In the first time, you will need to create Certificates manually and put domain TXT record
follow CertBot instructions
certbot certonly --preferred-challenges=dns --manual -d [Domain] --manual-public-ip-logging-okIn the first time, you will need to create Certificates manually and put domain TXT record

CertBot ACME V1 To ACME V2

certbot certonly --server https://acme-staging-v02.api.letsencrypt.org/directory --preferred-challenges=dns --manual -d [Domain] --manual-public-ip-logging-ok
Upload Certificate to Mikrotik
Fullchain.pem
privkey.pem
In the mikrotik Command
 /certificate import file-name=fullchain.pem passphrase=""
/certificate import file-name=privkey.pem passphrase=""
/ip service set www-ssl certificate=fullchain.pem_0
 /ip service set api-ssl certificate=fullchain.pem_0
/ip hotspot profile 
add dns-name=[Domain] hotspot-address=[Address] http-cookie-lifetime=2h \
    login-by=cookie,http-chap,https name=hsprof1 ssl-certificate=\
    fullchain.pem_0 use-radius=yes

ไม่มีความคิดเห็น:

แสดงความคิดเห็น