Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - overseer

Pages: 1 2 [3] 4 5 ... 61
31
Actually, it's on another server that uses certbot instead of acme.sh, so you would have to either switch to cerbot as your ACME client or adapt it over to acme.sh. Here's a snippet from a domain.conf to give you an idea:

Code: [Select]
# Options used in the renewal process
[renewalparams]
authenticator = dns-cloudflare
account = aedMkvm4D2h7A9T0MkGBsdTZ
server = https://acme-v02.api.letsencrypt.org/directory
dns_cloudflare_propagation_seconds = 60
dns_cloudflare_credentials = /path/to/conf/credentials.key

32
If you use Cloudflare, you can authenticate via DNS challenge with an API key/token. That's what I do.

33
If you are 301 redirecting http traffic to https, then LetsEncrypt will not validate the challenge file. You need to temporarily allow the http traffic in without encryption to validate the .well-known acme challenge. Then you can put back in place the http -> https redirect.

34
Information / Re: Is it 6 month or Annually License?
« on: April 08, 2024, 09:30:53 PM »
It was AI bot spam -- I reported it earlier, hence now it has been removed. Pure gibberish!

35
Which aspect of Cloudflare's functionality are you interested in?

36
CentOS 7 Problems / Re: Google indexing link to CWP
« on: April 08, 2024, 09:27:51 PM »
Did a CWP update blow away the robots.txt files?

37
How to / Re: [Howto] Install Rspamd
« on: April 08, 2024, 01:57:10 PM »
I respect Netino, but my personal tendency would be to stay close to the default kit that CWP expects and work within that toolset. Postfix can be tuned for anti-UCE and spamassassin is there, too.

38
Installation / Re: MySQL root password is invalid!!! Error
« on: April 08, 2024, 01:54:02 PM »
Check your run level:
Code: [Select]
systemctl get-default
To change to multi-user CLI (no GUI):
Code: [Select]
systemctl set-default multi-user.target

39
Code: [Select]
/ etc /pki/tls/certs/

40
Google is now all-in on DMARC for delivery to Gmail, so definitely check that.
https://dmarcian.com/yahoo-and-google-dmarc-required/

41
I'm just giving you a general impression, based on bug/trouble reports here on this forum. Rocky seems to have a rockier track record than AlmaLinux, which is generally smoother.

42
Whenever I enable a new version of php for use with php-fpm, I copy the previous version's $USER conf to the new version, updating the paths therein to correctly reflect the version.
Code: [Select]
/opt/alt/php-fpm$VERSION/usr/etc/php-fpm.d/users/

43
Do you have SPF records in place? Valid PTR record (reverse DNS) with your hosting company/ISP?

44
Updates / Re: CentOS 7 Update to CentOS 8 Stream
« on: April 05, 2024, 03:06:54 PM »
Like almost all of CWP's documentation, that recommendation is out of date. The word from experienced users is that pinned, delayed repos is not sufficient to make a stable server out of a rolling beta release. Go with AlmaLinux.

45
Updates / Re: CentOS 7 Update to CentOS 8 Stream
« on: April 05, 2024, 01:34:56 AM »
Better to ELevate to AlmaLinux 8, then upgrade to AlmaLinux 9 once CWP comes out of EL9 beta.
(In other words, the current best wisdom is to skip over a rolling release like CentOS 8 Stream, which is not a viable foundation for a server.)

Pages: 1 2 [3] 4 5 ... 61