{"id":355,"date":"2024-04-30T18:20:36","date_gmt":"2024-04-30T10:20:36","guid":{"rendered":"\/blog\/?p=355"},"modified":"2024-05-09T19:05:27","modified_gmt":"2024-05-09T11:05:27","slug":"acme-v2-ssl%e8%af%81%e4%b9%a6%e8%87%aa%e5%8a%a8%e5%8c%96%e7%bb%ad%e6%9c%9f%e5%bf%ab%e9%80%9f%e5%85%a5%e9%97%a8","status":"publish","type":"post","link":"https:\/\/www.mailabc.cn\/blog\/2024\/04\/30\/acme-v2-ssl%e8%af%81%e4%b9%a6%e8%87%aa%e5%8a%a8%e5%8c%96%e7%bb%ad%e6%9c%9f%e5%bf%ab%e9%80%9f%e5%85%a5%e9%97%a8\/","title":{"rendered":"ACME v2 SSL\u8bc1\u4e66\u81ea\u52a8\u5316\u7eed\u671f\u5feb\u901f\u5165\u95e8"},"content":{"rendered":"<div id=\"sc_notice\">\u7531\u4e8e\u5404\u5927\u5382\u5546\u5bf9\u514d\u8d39SSL\u8bc1\u4e66\u7684\u671f\u9650\u9650\u5236\u53ea\u67093\u4e2a\u6708\uff0c\u5bf9\u4e8e\u4e70\u4e0d\u8d77SSL\u8bc1\u4e66\u7684\u535a\u4e3b\u6765\u8bf4\u6bcf3\u4e2a\u6708\u5c31\u8981\u66f4\u6362\u4e00\u6b21\u8bc1\u4e66\u3002\u5982\u679c\u6bcf\u6b21\u90fd\u9700\u8981\u624b\u52a8\u7533\u8bf7\u3001\u66f4\u6362\uff0c\u65e0\u7591\u662f\u4e00\u4e2a\u5f88\u7e41\u7410\u7684\u5de5\u4f5c\u3002\u672c\u6587\u4e3b\u8981\u4ecb\u7ecd\u901a\u8fc7ACME\u5de5\u5177\u81ea\u52a8\u7533\u8bf7\u8bc1\u4e66\u65b9\u6848<\/div>\n<p>\u53c2\u8003\u6765\u6e90\uff1a<\/p>\n<p>1.<a href=\"https:\/\/blog.freessl.cn\/acme-quick-start\/\" rel=\"nofollow noopener\" target=\"_blank\">ACME v2\u8bc1\u4e66\u81ea\u52a8\u5316\u5feb\u901f\u5165\u95e8 (freessl.cn)<\/a><\/p>\n<p>2.<a href=\"https:\/\/letsencrypt.org\/zh-cn\/docs\/client-options\/\" rel=\"nofollow noopener\" target=\"_blank\">ACME \u5ba2\u6237\u7aef &#8211; Let&#8217;s Encrypt &#8211; \u514d\u8d39\u7684SSL\/TLS\u8bc1\u4e66 (letsencrypt.org)<\/a><\/p>\n<h2>\u5b89\u88c5acme.sh<\/h2>\n<p>\u5efa\u8bae\u5207\u6362\u5230root\u8d26\u53f7\u4e0b\u6267\u884c\u5982\u4e0b\u547d\u4ee4\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">curl https:\/\/get.acme.sh | sh -s email=my@example.com<\/pre>\n<p>\u5982\u679c\u901f\u5ea6\u8fc7\u6162\uff0c\u4e5f\u53ef\u4ee5\u901a\u8fc7\u56fd\u5185\u955c\u50cf\u6e90\u5b89\u88c5\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">curl https:\/\/gitcode.net\/cert\/cn-acme.sh\/-\/raw\/master\/install.sh?inline=false | sh -s email=my@example.com<\/pre>\n<p>\u6ce8\u610f\uff1a\u4e0a\u8ff0email=\u53c2\u6570\u8868\u793a\u90e8\u7f72\u7684\u8d26\u53f7\uff0c\u5199\u4e0a\u81ea\u5df1\u7684\u90ae\u7bb1\u8d26\u53f7\u5373\u53ef\u3002<\/p>\n<p>\u9ed8\u8ba4\u5b89\u88c5\u5728~\/.acme.sh\/\u76ee\u5f55\uff08~\u8868\u793a\u7528\u6237\u4e3b\u76ee\u5f55\uff09\uff0c\u540c\u65f6\u81ea\u52a8\u8bbe\u7f6e\u4e86\u4e00\u6761cron\u5b9a\u65f6\u4efb\u52a1\uff0c\u7c7b\u4f3c\u5982\u4e0b\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">1 0 * * * \"\/root\/.acme.sh\"\/acme.sh --cron --home \"\/root\/.acme.sh\" &gt; \/dev\/null<\/pre>\n<p>\u540c\u65f6\u81ea\u52a8\u914d\u7f6e\u4e86acme.sh\u7684alias\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">alias acme.sh='\/root\/.acme.sh\/acme.sh'<\/pre>\n<h2>\u9a8c\u8bc1\u57df\u540d<\/h2>\n<p>\u53ef\u4ee5\u8fdb\u884c\u81ea\u52a8\u5316\u9a8c\u8bc1\uff0c\u4e5f\u53ef\u4ee5\u624b\u52a8\u8fdb\u884c\u9a8c\u8bc1\u3002\u4ee5freessl.cn\u4e3a\u4f8b\uff0c\u53ef\u4ee5\u901a\u8fc7\u57df\u540dCNAME\u8bb0\u5f55\u9a8c\u8bc1\uff0c\u4e5f\u53ef\u4ee5\u91c7\u7528\u6587\u4ef6\u9a8c\u8bc1\u3002<\/p>\n<p><a href=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009505345.jpg\" rel=\"box\" class=\"fancybox\" rel=\"nofollow\" ><img class=\"aligncenter wp-image-356\" data-original=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009505345.jpg\"  alt=\"\" width=\"700\" height=\"383\" \/><\/a><\/p>\n<noscript><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-356\" src=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009505345.jpg\" alt=\"\" width=\"700\" height=\"383\" \/><\/a><\/p><\/noscript>\n<p>\u83b7\u53d6\u57df\u540dDCV\u4fe1\u606f\uff1a<a href=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009523185.jpg\" rel=\"box\" class=\"fancybox\" rel=\"nofollow\" ><img class=\"aligncenter wp-image-357\" data-original=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009523185.jpg\"  alt=\"\" width=\"691\" height=\"246\" \/><\/a><\/p>\n<noscript><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-357\" src=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009523185.jpg\" alt=\"\" width=\"691\" height=\"246\" \/><\/a><\/p><\/noscript>\n<p>\u7136\u540e\u8fdb\u5165\u57df\u540d\u7ba1\u7406\u7cfb\u7edf\uff08\u81ea\u5df1\u8d2d\u4e70\u57df\u540d\u7684\u670d\u52a1\u5546\u6216\u8005\u6388\u6743\u7684DNS\u670d\u52a1\u5546\uff09\u6dfb\u52a0\u4e0a\u8ff0CNAME\u8bb0\u5f55\uff1a<\/p>\n<p><a href=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009564175.jpg\" rel=\"box\" class=\"fancybox\" rel=\"nofollow\" ><img class=\"aligncenter wp-image-358\" data-original=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009564175.jpg\"  alt=\"\" width=\"658\" height=\"580\" \/><\/a><\/p>\n<noscript><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-358\" src=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043009564175.jpg\" alt=\"\" width=\"658\" height=\"580\" \/><\/a><\/p><\/noscript>\n<p style=\"text-align: center;\"><span style=\"color: #808080; font-size: 8pt;\">\u963f\u91cc\u4e91\u89e3\u6790\u8bbe\u7f6e\u754c\u9762<\/span><\/p>\n<p>\u6b63\u786e\u914d\u7f6e\u540e\u7acb\u5373\u68c0\u6d4b\uff0c\u5373\u53ef\u83b7\u5f97\u76f8\u5173\u914d\u7f6e\u547d\u4ee4\uff1a<\/p>\n<p><a href=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043010001038.jpg\" rel=\"box\" class=\"fancybox\" rel=\"nofollow\" ><img class=\"aligncenter wp-image-359\" data-original=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043010001038.jpg\"  alt=\"\" width=\"658\" height=\"527\" \/><\/a><\/p>\n<noscript><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-359\" src=\"\/blog\/wp-content\/uploads\/2024\/04\/2024043010001038.jpg\" alt=\"\" width=\"658\" height=\"527\" \/><\/a><\/p><\/noscript>\n<h2>\u8bc1\u4e66\u7533\u8bf7\u914d\u7f6e<\/h2>\n<p>\u5728\u7cfb\u7edf\u4e0a\u6267\u884c\u4e0a\u8ff0acme.sh\u7684\u90e8\u7f72\u547d\u4ee4\uff0c\u5373\u53ef\u8fdb\u884c\u8bc1\u4e66\u90e8\u7f72\u3002<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">acme.sh --issue -d www.mailabc.cn  --dns dns_dp --server https:\/\/acme.freessl.cn\/v2\/DV90\/directory\/xxxxxx<\/pre>\n<p>\u6ce8\u610f\u56fe\u4e2d\u6253\u7801\u7684\u90e8\u5206\u662f\u9488\u5bf9\u8fd9\u4e2a\u7533\u8bf7\u7684\u4e13\u5c5eACME\u5730\u5740\uff0c\u4e0d\u8981\u6cc4\u9732\u3002\u90e8\u7f72\u5b8c\u6210\u540e\uff0c\u5728~\/.acme.sh\/\u76ee\u5f55\u4e0b\u4f1a\u751f\u6210\u57df\u540d\u76ee\u5f55\uff0c\u5982~\/.acme.sh\/www.mailabc.cn\/\uff0c\u8fd9\u91cc\u5b58\u653e\u7533\u8bf7\u7684\u8bc1\u4e66\u6587\u4ef6\u3002<\/p>\n<h2>\u914d\u7f6e\u8bc1\u4e66<\/h2>\n<p>\u9488\u5bf9Apache\u670d\u52a1\u5668\uff0c\u53ef\u4ee5\u53c2\u8003\u5982\u4e0b\u547d\u4ee4\u90e8\u7f72\u8bc1\u4e66\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">acme.sh --install-cert -d example.com \\\r\n--cert-file      \/path\/to\/certfile\/in\/apache\/cert.pem  \\\r\n--key-file       \/path\/to\/keyfile\/in\/apache\/key.pem  \\\r\n--fullchain-file \/path\/to\/fullchain\/certfile\/apache\/fullchain.pem \\\r\n--reloadcmd     \"service apache2 force-reload\"<\/pre>\n<p>\u9488\u5bf9Nginx\u670d\u52a1\u5668\uff0c\u53ef\u4ee5\u53c2\u8003\u5982\u4e0b\u547d\u4ee4\u90e8\u7f72\u8bc1\u4e66\uff1a<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\">acme.sh --install-cert -d example.com \\\r\n--key-file       \/path\/to\/keyfile\/in\/nginx\/key.pem  \\\r\n--fullchain-file \/path\/to\/fullchain\/nginx\/cert.pem \\\r\n--reloadcmd     \"service nginx force-reload\"<\/pre>\n<p>\u6ce8\u610f\uff1a\u4e0a\u8ff0reloadcmd\u9700\u8981\u6839\u636eLinux\u7cfb\u7edf\u7248\u672c\u4e0d\u540c\u7a0d\u4f5c\u4fee\u6539\uff0c\u6bd4\u5982\u901a\u8fc7systemctl\u800c\u4e0d\u662fservice\u3002<\/p>\n<p>\u9488\u5bf9\u4e0a\u9762\u7684\u547d\u4ee4\uff0c\u53ef\u4ee5\u4fdd\u5b58\u5230\u4e00\u4e2a\u811a\u672c\u6587\u4ef6\u4e2d\uff0c\u505a\u4e00\u4e2a\u5b9a\u65f6\u4efb\u52a1\u81ea\u52a8\u6267\u884c\u3002\u8fd9\u6837\u5c31\u53ef\u4ee5\u4eab\u53d7\u8bc1\u4e66\u81ea\u52a8\u7eed\u671f\u4e86\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u53c2\u8003\u6765\u6e90\uff1a 1.ACME v2\u8bc1\u4e66\u81ea\u52a8\u5316\u5feb\u901f\u5165\u95e8 (freessl.cn) 2.ACME \u5ba2\u6237\u7aef &#038;#8211 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":362,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[37],"class_list":["post-355","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ssl","tag-ssl"],"_links":{"self":[{"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/posts\/355","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/comments?post=355"}],"version-history":[{"count":4,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/posts\/355\/revisions"}],"predecessor-version":[{"id":364,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/posts\/355\/revisions\/364"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/media\/362"}],"wp:attachment":[{"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/media?parent=355"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/categories?post=355"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.mailabc.cn\/blog\/wp-json\/wp\/v2\/tags?post=355"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}