Creation and managment of certificates
Last adaptation to the version: 12.6.0
New:
- Updated to Redesign of the webinterface
This article refers to a Resellerpreview
ACME certificates (Let's Encrypt)
ACME
Area
Caption | Value | Description | UTMuser@firewall.name.fqdnAuthentifizierung ![]() |
---|---|---|---|
Activated: | Yes | Enables the use of ACME certificates. For more information see below Activate ACME service. | |
Use system-wide nameservers for ACME challenges: | Yes | If the addresses for the servers for the extension of the ACME challenges cannot be resolved via the system-wide nameserver (e.g. due to configured relay or foreward zones), alternative nameservers can be entered by deactivating No. | |
Nameserver for ACME challenges: Can be used for ACME challenges when system-wide nameserver is disabled |
»85.209.185.50»85.209.185.51»2a09:9c40:1:53::1»2a09:9c40:1:53::2 | Here you can enter the nameservers for the ACME-Challenges. | |
Activate ACME service
Activate ACME service
Um ACME Zertifikate nutzen zu können, muss dies unter ACME Aktiviert: Ja aktiviert werden.
Area- Sobald der Dienst aktiviert wurde und dies mit gespeichert wurde, wird der Link zu den Nutzungsbedingungen geladen und es lassen sich die Einstellungen aufrufen.
- With the button Activate Yes and the storage of an Email address for notifications by the ACME service provider (here: Let's Encrypt), the information can be saved with
- A dialog will appear with a link to the Terms of Use, which must be accepted Yes.
UTMuser@firewall.name.fqdnAuthentifizierung

Sobald der Dienst aktiviert wurde und dies mit
gespeichert wurde, wird der Link zu den Nutzungsbedingungen geladen und es lassen sich die Einstellungen aufrufen.
UTMuser@firewall.name.fqdnAuthentifizierungCertificates

With the button Activate Yes and the storage of an Email address for notifications by the ACME service provider (here: Let's Encrypt), the information can be saved with
UTMuser@firewall.name.fqdnAuthentifizierung

A registration with the ACME service provider is then performed
UTMuser@firewall.name.fqdnAuthentifizierung

Successful registration is indicated with the status OK.
Generate token
Generate token
spDYN To generate the certificates, the ACME token must first be generated in the spDYN portal.
Within the spDYN portal, the corresponding host must be opened.
- Call up spDyn Host
- Select the ACME Challenge Token from the Token drop-down menu.
- Generate token
notemptyThe token is displayed once during generation and cannot be displayed again.
The token should be noted and stored safely.
Renewal of ACME certificates
Renewal of ACME certificates
notempty
New as of 12.4
The renewal of the ACME/Let's Encrypt certificates takes place via the nameservers used, which are configured under Area ACME (see above)
ACME Certificates
ACME CertificatesAfter completing the previous steps, the actual certificate can now be generated. A click on Certificates tab opens the corresponding dialog.
in the