Skip to content

Instantly share code, notes, and snippets.

Avatar

Mark Y. Goh mgoh

View GitHub Profile
@mgoh
mgoh / LetsEncrypt389DS.md
Created Nov 3, 2020 — forked from plembo/LetsEncrypt389DS.md
Let's Encrypt 389 Directory Server
View LetsEncrypt389DS.md

Let's Encrypt the 389 Directory Server

The following procedure is for installing a wildcard cert and key paid from Let's Encrypt for the 389 Directory Server.

  1. Use the 389 Console gui to create a certificate database db and to import the Let's Encrypt certificate chain cert (which will be in PEM format). See secs. 9.1.3.2 and 9.3.3.2 of the Red Hat Directory Server Administration Guide for details.

  2. Create a pin.txt file under /etc/dirsrv/slapd-[instance name]:

Internal (Software) Token:agoodpassword