{"id":61,"date":"2023-12-06T19:21:05","date_gmt":"2023-12-06T11:21:05","guid":{"rendered":"https:\/\/wp.aiapaas.com\/?p=61"},"modified":"2024-11-18T17:46:25","modified_gmt":"2024-11-18T09:46:25","slug":"https%e8%af%81%e4%b9%a6%e8%87%aa%e5%8a%a8%e7%94%b3%e8%af%b7%e4%b8%8e%e7%bb%ad%e6%9c%9f","status":"publish","type":"post","link":"https:\/\/www.aiapaas.com\/index.php\/2023\/12\/06\/https%e8%af%81%e4%b9%a6%e8%87%aa%e5%8a%a8%e7%94%b3%e8%af%b7%e4%b8%8e%e7%bb%ad%e6%9c%9f\/","title":{"rendered":"Https\u8bc1\u4e66\u81ea\u52a8\u7533\u8bf7\u4e0e\u7eed\u671f"},"content":{"rendered":"\n<p><strong>\u672c\u6587\u63cf\u8ff0Linux\uff08centOS\uff09\u4e0b\u5982\u4f55\u81ea\u52a8\u7533\u8bf7\u901a\u914d\u7b26\u7248\u7684HTTPS\u3001SSL\u8bc1\u4e66\uff0c\u5e76\u81ea\u52a8\u7eed\u671f<\/strong><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">1\u3001\u73af\u5883\u4e0e\u811a\u672c\u51c6\u5907<\/h2>\n\n\n\n<pre class=\"wp-block-code has-medium-font-size\"><code><strong>\u5b89\u88c5snapd\u5de5\u5177<\/strong><\/code><\/pre>\n\n\n\n<pre class=\"wp-block-code\"><code># \u5b89\u88c5EPEL\u5b58\u50a8\u5e93 \nsudo yum install epel-release -y \n# \u5b89\u88c5snapd\u5305 \nsudo yum install snapd -y \n# snapd\u5f00\u673a\u542f\u52a8 \nsudo systemctl enable --now snapd.socket\n systemctl start snapd \n# \u914d\u7f6esnap\u8f6f\u94fe\u63a5\n sudo ln -s \/var\/lib\/snapd\/snap \/snap\n #\u66f4\u65b0snapd\u7248\u672c \nsudo snap install core<\/code><\/pre>\n\n\n\n<p><strong>\u4f7f\u7528snap\u5b89\u88c5certbot\u5de5\u5177<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># \u5b89\u88c5certbot\u8bc1\u4e66\u673a\u5668\u4eba\n sudo snap install --classic certbot \n# \u914d\u7f6e\u8f6f\u94fe\u63a5\n sudo ln -s \/snap\/bin\/certbot \/usr\/bin\/certbot<\/code><\/pre>\n\n\n\n<p><strong>\u914d\u7f6e\u81ea\u52a8\u7eed\u671f\u811a\u672c<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>$ wget https:\/\/github.com\/ywdblog\/certbot-letencrypt-wildcardcertificates-alydns-au\n$ unzip -o certbot-letencrypt-wildcardcertificates-alydns-au-master.zip\n$ cd certbot-letencrypt-wildcardcertificates-alydns-au-master\n$ chmod 0777 au.sh \n\u5c06\u5b89\u88c5\u5305\u89e3\u538b\u5230\/opt\u76ee\u5f55\u4e0b\n$ mv certbot-letencrypt-wildcardcertificates-alydns-au-master\/* \/opt\/certbot\/<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">2\u3001\u914d\u7f6e<\/h2>\n\n\n\n<p>\uff081\uff09domain.ini<\/p>\n\n\n\n<p>\u5982\u679cdomain.ini\u6587\u4ef6\u6ca1\u6709\u4f60\u7684\u6839\u57df\u540d\uff0c\u8bf7\u81ea\u884c\u6dfb\u52a0\u3002<\/p>\n\n\n\n<p>\uff082\uff09\u586b\u5199au.sh\u6587\u4ef6\u4e2dDNS API \u5bc6\u94a5\uff1a<\/p>\n\n\n\n<p>\u8fd9\u4e2a API \u5bc6\u94a5\u4ec0\u4e48\u610f\u601d\u5462\uff1f\u7531\u4e8e\u9700\u8981\u901a\u8fc7 API \u64cd\u4f5c\u963f\u91cc\u4e91 DNS, \u817e\u8baf\u4e91 DNS \u7684\u8bb0\u5f55\uff0c\u6240\u4ee5\u9700\u8981\u53bb\u57df\u540d\u670d\u52a1\u5546\u54ea\u513f\u83b7\u53d6 API \u5bc6\u94a5\uff0c\u7136\u540e\u914d\u7f6e\u5728<a href=\"http:\/\/au.sh\/\">au.sh<\/a>\u6587\u4ef6\u4e2d:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>ALY_KEY \u548c ALY_TOKEN\uff1a\u963f\u91cc\u4e91&nbsp;<a href=\"https:\/\/help.aliyun.com\/knowledge_detail\/38738.html\">API key \u548c Secrec \u5b98\u65b9\u7533\u8bf7\u6587\u6863<\/a>\u3002<\/li>\n\n\n\n<li>TXY_KEY \u548c TXY_TOKEN\uff1a\u817e\u8baf\u4e91&nbsp;<a href=\"https:\/\/console.cloud.tencent.com\/cam\/capi\">API \u5bc6\u94a5\u5b98\u65b9\u7533\u8bf7\u6587\u6863<\/a>\u3002<\/li>\n\n\n\n<li>HWY_KEY \u548c HWY_TOKEN: \u534e\u4e3a\u4e91&nbsp;<a href=\"https:\/\/support.huaweicloud.com\/devg-apisign\/api-sign-provide.html\">API \u5bc6\u94a5\u5b98\u65b9\u7533\u8bf7\u6587\u6863<\/a><\/li>\n\n\n\n<li>GODADDY_KEY \u548c GODADDY_TOKEN\uff1aGoDaddy&nbsp;<a href=\"https:\/\/developer.godaddy.com\/getstarted\">API \u5bc6\u94a5\u5b98\u65b9\u7533\u8bf7\u6587\u6863<\/a>\u3002<\/li>\n<\/ul>\n\n\n\n<p>\uff083\uff09\u9009\u62e9\u8fd0\u884c\u73af\u5883<\/p>\n\n\n\n<p>\u76ee\u524d\u8be5\u5de5\u5177\u652f\u6301\u4e94\u79cd\u8fd0\u884c\u73af\u5883\u548c\u573a\u666f\uff0c\u901a\u8fc7 hook \u6587\u4ef6\u548c\u53c2\u6570\u6765\u8c03\u7528\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>PHP(&gt;4\u4ee5\u4e0a\u7248\u672c\u5747\u53ef)<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> php aly add\/clean\uff1aPHP\u64cd\u4f5c\u963f\u91cc\u4e91DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> php txy add\/clean\uff1aPHP\u64cd\u4f5c\u817e\u8baf\u4e91DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> php godaddy add\/clean\uff1aPHP\u64cd\u4f5cGoDaddy DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li>Python(\u652f\u63012.7\u548c3.7\uff0c\u65e0\u9700\u4efb\u4f55\u7b2c\u4e09\u65b9\u5e93)<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> python aly add\/clean\uff1aPython\u64cd\u4f5c\u963f\u91cc\u4e91DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> python txy add\/clean\uff1aPython\u64cd\u4f5c\u817e\u8baf\u4e91DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> python hwy add\/clean\uff1aPython\u64cd\u4f5c\u534e\u4e3a\u4e91DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n\n\n\n<li><a href=\"http:\/\/au.sh\/\">au.sh<\/a> python godaddy add\/clean\uff1aPython\u64cd\u4f5cGoDaddy DNS\uff0c\u589e\u52a0\/\u6e05\u7a7aDNS\u3002<\/li>\n<\/ul>\n\n\n\n<p>\u5982\u679c\u6ca1\u6709php\u6216\u8005python\uff0c\u76f4\u63a5 yum install php python\u5c31\u597d<\/p>\n\n\n\n<p>\u6839\u636e\u81ea\u5df1\u670d\u52a1\u5668\u73af\u5883\u548c\u57df\u540d\u670d\u52a1\u5546\u9009\u62e9\u4efb\u610f\u4e00\u4e2a hook shell\uff08\u5305\u542b\u76f8\u5e94\u53c2\u6570\uff09\uff0c\u5177\u4f53\u4f7f\u7528\u89c1\u4e0b\u9762\u3002<\/p>\n\n\n\n<p><strong>\u4f7f\u7528certbot\u751f\u6210\u901a\u914d\u7b26\u8bc1\u4e66<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>\/usr\/bin\/certbot certonly -d *.aiapaas.com -d aiapaas.com --manual --preferred-challenges dns --manual-auth-hook \"\/opt\/certbot\/au.sh python aly add\" --manual-cleanup-hook \"\/opt\/certbot\/au.sh python aly clean\"\n<\/code><\/pre>\n\n\n\n<p>\u8f93\u51fa\u7ed3\u679c\u5982\u4e0b<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"716\" src=\"https:\/\/wp.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5-1024x716.png\" alt=\"\" class=\"wp-image-64\" srcset=\"https:\/\/www.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5-1024x716.png 1024w, https:\/\/www.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5-300x210.png 300w, https:\/\/www.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5-768x537.png 768w, https:\/\/www.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5-600x420.png 600w, https:\/\/www.aiapaas.com\/wp-content\/uploads\/2023\/12\/4CCC7031-CFD5-4714-B670-702775EDBFB5.png 1061w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">3\u3001\u914d\u7f6e\u8bc1\u4e66\u7eed\u671f<\/h2>\n\n\n\n<pre class=\"wp-block-code\"><code>vim \/etc\/crontab<\/code><\/pre>\n\n\n\n<pre class=\"wp-block-code\"><code>3 3 *\/1 * * root \/usr\/bin\/certbot renew --manual --preferred-challenges dns --manual-auth-hook \"\/opt\/certbot\/au.sh python aly add\" --manual-cleanup-hook \"\/opt\/certbot\/au.sh python aly clean\"<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">4\u3001nginx\u914d\u7f6e\u793a\u4f8b<\/h2>\n\n\n\n<p>\u5982\u679c\u865a\u62df\u673a\u76f4\u63a5\u542f\u52a8nginx\uff0c\u90a3\u4e48\u5c06\u8bc1\u4e66\u5730\u5740\u914d\u7f6e\u4e3a\u4e0a\u9762\u81ea\u52a8\u66f4\u65b0\u8bc1\u4e66\u8f93\u51fa\u7684\u5730\u5740\u5c31\u597d\u3002<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>\u5982\u679c\u4f7f\u7528docker\u542f\u52a8\uff0c\u5047\u8bbe\u4ee5\u5982\u4e0b\u547d\u4ee4\u542f\u52a8\uff0c\u914d\u7f6e\u4e86\u5238\u6620\u5c04<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code><code>docker run -d --name nginx80443 -p 80:80 -p 443:443 -v \/mnt\/nginx\/nginx.conf:\/etc\/nginx\/nginx.conf -v \/mnt\/nginx\/logs:\/var\/log\/nginx -v \/mnt\/nginx\/html:\/usr\/share\/nginx\/html -v \/mnt\/nginx\/conf:\/etc\/nginx\/conf.d -v \/mnt\/nginx\/cert:\/usr\/share\/nginx\/cert -v \/etc\/letsencrypt\/archive\/aiapaas.com:\/usr\/share\/nginx\/autocert --privileged=true nginx<\/code><\/code><\/pre>\n\n\n\n<p>\u90a3\u4e48nginx\u914d\u7f6e\u6587\u4ef6\u5982\u4e0b\uff1a<br><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code><code>server {\n    listen       443 ssl;\n    server_name  localhost;\n\n    #access_log  \/var\/log\/nginx\/host.access.log  main;\n\n    location \/ {\n        root   \/usr\/share\/nginx\/html;\n        index  home.html;\n    }\n\n\n    ssl_certificate      \/usr\/share\/nginx\/autocert\/fullchain1.pem;\n    ssl_certificate_key  \/usr\/share\/nginx\/autocert\/privkey1.pem;\n...<\/code><\/code><\/pre>\n","protected":false},"excerpt":{"rendered":"<p>\u672c\u6587\u63cf\u8ff0Linux\uff08centOS\uff09\u4e0b\u5982\u4f55\u81ea\u52a8\u7533\u8bf7\u901a\u914d\u7b26\u7248\u7684HTTPS\u3001SSL\u8bc1\u4e66\uff0c\u5e76\u81ea\u52a8\u7eed\u671f 1\u3001\u73af\u5883\u4e0e\u811a\u672c\u51c6 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[],"class_list":["post-61","post","type-post","status-publish","format-standard","hentry","category-10"],"_links":{"self":[{"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/posts\/61","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/comments?post=61"}],"version-history":[{"count":9,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/posts\/61\/revisions"}],"predecessor-version":[{"id":190,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/posts\/61\/revisions\/190"}],"wp:attachment":[{"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/media?parent=61"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/categories?post=61"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.aiapaas.com\/index.php\/wp-json\/wp\/v2\/tags?post=61"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}