Set firewall exception for certbot auto-renewal

My server is running certbot but the linode firewall blocks the auto-renewal. I am running exceptions for incoming HTTPS and SSH requests - how can I set an exception so certbot can renew the certificate without having to disable the firewall?

2 Replies

According to my configuration, the renewal server is:

https://acme-v02.api.letsencrypt.org/directory

so https should be the only exception that you need. I suspect there's something else at play here.

If, by "Linode firewall", you mean the Cloud Firewall, I can't help you. I suggest you contact support.

-- sw

Port 80 is required to be open/responding appropriately for renewals, if you're using webserver validation and not DNS validation

Reply

Please enter an answer
Tips:

You can mention users to notify them: @username

You can use Markdown to format your question. For more examples see the Markdown Cheatsheet.

> I’m a blockquote.

I’m a blockquote.

[I'm a link] (https://www.google.com)

I'm a link

**I am bold** I am bold

*I am italicized* I am italicized

Community Code of Conduct