Files
operating-system/buildroot/package/dehydrated/Config.in
Pascal Vizeli 4411307353 Buildroot 2018-11 (#258)
* Update to buildroot 2018.11

* containerd update

* runc update

* runc docker engine

* runc docker proxy

* update rpi firmware

* update network manager

* update dhcpd

* update wait on network

* update rpi wifi

* revert glibc
2018-11-26 11:04:01 +01:00

34 lines
1.3 KiB
Plaintext

config BR2_PACKAGE_DEHYDRATED
bool "dehydrated"
depends on BR2_USE_MMU # bash
select BR2_PACKAGE_BASH
select BR2_PACKAGE_BUSYBOX_SHOW_OTHERS # bash
select BR2_PACKAGE_LIBCURL
select BR2_PACKAGE_CURL
select BR2_PACKAGE_OPENSSL
select BR2_PACKAGE_LIBOPENSSL_BIN if BR2_PACKAGE_LIBOPENSSL
select BR2_PACKAGE_LIBRESSL_BIN if BR2_PACKAGE_LIBRESSL
help
Dehydrated is a client for signing certificates with an
ACME-server (e.g. Let's Encrypt) implemented as a relatively
simple (zsh-compatible) bash-script. This client supports
both ACME v1 and the new ACME v2 including support for
wildcard certificates!
To use this script in Buildroot:
- Create /etc/dehydrated/domains.txt
- Make sure that "dehydrated -c" is called regularly, e.g.
from cron.
- Make sure /etc/dehydrated is writable.
- Configure the webserver to export the WELLKNOWN directory
(/var/www/dehydrated) as /.well-known/acme-challenge
- Configure the webserver to use the certificates under
/etc/dehydrated/certs/<domain>
- Register a HOOK to reload the webserver after the
certificates have been renewed.
You probably need to install a custom /etc/dehydrated/config
with the rootfs overlay.
https://github.com/lukas2511/dehydrated