From c0ca372dfa59a6b4bb99e840bc991552acea3aee Mon Sep 17 00:00:00 2001 From: Nick Date: Wed, 27 Apr 2022 19:48:49 -0400 Subject: [PATCH] Upgrade certbot; add preferred chain flag (#2230) --- letsencrypt/rootfs/etc/services.d/lets-encrypt/run | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/letsencrypt/rootfs/etc/services.d/lets-encrypt/run b/letsencrypt/rootfs/etc/services.d/lets-encrypt/run index 5154c80..2b2698e 100644 --- a/letsencrypt/rootfs/etc/services.d/lets-encrypt/run +++ b/letsencrypt/rootfs/etc/services.d/lets-encrypt/run @@ -123,12 +123,14 @@ if [ "$CHALLENGE" == "dns" ]; then certbot certonly --non-interactive --keep-until-expiring --expand \ --email "$EMAIL" --agree-tos \ --config-dir "$CERT_DIR" --work-dir "$WORK_DIR" \ - --preferred-challenges "$CHALLENGE" "${DOMAIN_ARR[@]}" "${PROVIDER_ARGUMENTS[@]}" + --preferred-challenges "$CHALLENGE" "${DOMAIN_ARR[@]}" "${PROVIDER_ARGUMENTS[@]}" \ + --preferred-chain "ISRG Root X1" else certbot certonly --non-interactive --keep-until-expiring --expand \ --email "$EMAIL" --agree-tos \ --config-dir "$CERT_DIR" --work-dir "$WORK_DIR" \ - --preferred-challenges "$CHALLENGE" "${DOMAIN_ARR[@]}" "${ACME_CUSTOM_SERVER_ARGUMENTS[@]}" --standalone + --preferred-challenges "$CHALLENGE" "${DOMAIN_ARR[@]}" "${ACME_CUSTOM_SERVER_ARGUMENTS[@]}" --standalone \ + --preferred-chain "ISRG Root X1" fi # Get the last modified cert directory and copy the cert and private key to store