Postponed (maintainer needs more info)
Project:
Aegir HTTPS
Version:
7.x-3.182
Component:
Code
Priority:
Normal
Category:
Bug report
Assigned:
Unassigned
Reporter:
Created:
13 Nov 2019 at 01:43 UTC
Updated:
29 Nov 2019 at 22:20 UTC
Jump to comment: Most recent
Comments
Comment #2
colanIf you add the alias before you enable HTTPS, does that help? This always worked for me. Otherwise, LE won't know about the alias when the cert is first generated.
I suppose we could be explicit about this in the docs.
Comment #3
shaneonabike commentedI can give that a shot. So to test this out I would need to disable the certs completely, add the alias, and then re-enable SSL.
The thing though is that this is still kind of a bug. I have had situation where people add aliases afterwards because they buy other domains or whatever and want to add. It's a big step to go through and disable and then re-enable.
I do know that with Let's Encrypt you can easily tag another domain onto the existing from the command-line. I wonder if there is a way to integrate this as well.
I'll test my bit and get back to you.
Comment #4
colanNot just disable, but actually delete them to force regeneration. I just wanted to see if you're running into the problem I think you're running into. ;)
If so, yes, the real solution here is to do the following after a site is edited: If aliases were changed, force certificate regeneration from LE. IIRC, we never implemented this. But let's verify that's the problem first.