summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPaul Buetow <paul@buetow.org>2026-01-26 09:09:12 +0200
committerPaul Buetow <paul@buetow.org>2026-01-26 09:09:12 +0200
commit1bcfee2e3ed66bea3bdad05f1f0dc0a79d90aac4 (patch)
tree4ee0d26451feb94385a7a327885155e20634af82
parent9a57015b6fc729f8da37c42957733f1afb657be8 (diff)
Update
-rw-r--r--frontends/CLAUDE.md1
-rw-r--r--frontends/etc/acme-client.conf.tpl8
2 files changed, 9 insertions, 0 deletions
diff --git a/frontends/CLAUDE.md b/frontends/CLAUDE.md
new file mode 100644
index 0000000..43c994c
--- /dev/null
+++ b/frontends/CLAUDE.md
@@ -0,0 +1 @@
+@AGENTS.md
diff --git a/frontends/etc/acme-client.conf.tpl b/frontends/etc/acme-client.conf.tpl
index b99b428..12dd9d4 100644
--- a/frontends/etc/acme-client.conf.tpl
+++ b/frontends/etc/acme-client.conf.tpl
@@ -39,3 +39,11 @@ domain standby.<%= $host %> {
}
<% } -%>
<% } -%>
+
+# Current server's FQDN (blowfish.buetow.org or fishfinger.buetow.org)
+# Each server only has its own cert, no www/standby variants for server hostnames
+domain <%= "$hostname.$domain" %> {
+ domain key "/etc/ssl/private/<%= "$hostname.$domain" %>.key"
+ domain full chain certificate "/etc/ssl/<%= "$hostname.$domain" %>.fullchain.pem"
+ sign with letsencrypt
+}