From owner-freebsd-questions@freebsd.org Mon Dec 19 13:44:08 2016 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 2B2A7C86295 for ; Mon, 19 Dec 2016 13:44:08 +0000 (UTC) (envelope-from simon@optinet.com) Received: from cobra.acceleratedweb.net (cobra-gw.acceleratedweb.net [207.99.79.37]) by mx1.freebsd.org (Postfix) with SMTP id CE7D119BA for ; Mon, 19 Dec 2016 13:44:07 +0000 (UTC) (envelope-from simon@optinet.com) Received: (qmail 30593 invoked by uid 110); 19 Dec 2016 13:44:05 -0000 Received: from ool-43549c41.dyn.optonline.net (HELO desktop1) (simon@optinet.com@67.84.156.65) by cobra.acceleratedweb.net with SMTP; 19 Dec 2016 13:44:05 -0000 From: "Simon" To: "freebsd-questions" Date: Mon, 19 Dec 2016 08:44:06 -0500 Priority: Normal X-Mailer: PMMail 2000 Professional (2.20.2717) For Windows 2000 (5.1.2600;3) In-Reply-To: <20161219092354.4aa0f1c4@planb.netng.org> MIME-Version: 1.0 Subject: Re: ssl certificate Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Content-Filtered-By: Mailman/MimeDel 2.1.23 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 19 Dec 2016 13:44:08 -0000 On Mon, 19 Dec 2016 09:23:54 +0100, Vladimir Botka wrote: >On Mon, 19 Dec 2016 10:28:11 +0530 >Amitabh Kant wrote: >> Try https://letsencrypt.org/ . It has a fairly broad acceptance. >>=20 >> On Mon, Dec 19, 2016 at 10:24 AM, David Mehler >> wrote: >> > Hello, >> > Right now I'm doing self-signed ssl certificates, with my own CA. This >> > works fine, but might break. I've got a user who will be connecting >> > via sftp and via https and who might be put off by the self signed >> > aspect. >> > I am wondering if there are any free ssl providers? >Port security/py-certbot (letsencrypt.org client) works fine for me. >FYI, Automatic Certificate Management Environment (ACME) is IETF >project https://github.com/ietf-wg-acme/acme/ >FWIW, you might want to try my scripts and automate the renewal via >cron https://github.com/vbotka/le-utils. Available also as an Ansible >role https://galaxy.ansible.com/vbotka/leutils/. >There are also other letsencrypt clients >https://github.com/certbot/certbot/wiki/Links#other-lets-encrypt--acme-clie= >nts >HTH, Cheers, > -vlado Also looking for free domains, servers, and English-speaking admins. Thanks! -Simon