mirror of
git://git.proxmox.com/git/pve-docs.git
synced 2025-01-03 01:17:49 +03:00
fix #5665: add note about short-lived cert renewal
not that obvious behaviour on the systemd side, and missing cert renewal can have wide-reaching consequences. Signed-off-by: Fabian Grünbichler <f.gruenbichler@proxmox.com>
This commit is contained in:
parent
4d318fb1cd
commit
5a42e20dba
@ -223,6 +223,9 @@ If a node has been successfully configured with an ACME-provided certificate
|
||||
renewed by the `pve-daily-update.service`. Currently, renewal will be attempted
|
||||
if the certificate has expired already, or will expire in the next 30 days.
|
||||
|
||||
NOTE: If you are using a custom directory that issues short-lived certificates,
|
||||
disabling the random delay for the `pve-daily-update.timer` unit might be
|
||||
advisable to avoid missing a certificate renewal after a reboot.
|
||||
|
||||
ACME Examples with `pvenode`
|
||||
~~~~~~~~~~~~~~~~~~~~~~~~~~~~
|
||||
|
Loading…
Reference in New Issue
Block a user