xref: /openbsd/etc/examples/acme-client.conf (revision 34982bd4)
1b2796bcbSflorian#
2*34982bd4Stb# $OpenBSD: acme-client.conf,v 1.5 2023/05/10 07:34:57 tb Exp $
3b2796bcbSflorian#
4b2796bcbSflorianauthority letsencrypt {
5ef5f0125Sflorian	api url "https://acme-v02.api.letsencrypt.org/directory"
6b2796bcbSflorian	account key "/etc/acme/letsencrypt-privkey.pem"
7b2796bcbSflorian}
8b2796bcbSflorian
9b2796bcbSflorianauthority letsencrypt-staging {
10ef5f0125Sflorian	api url "https://acme-staging-v02.api.letsencrypt.org/directory"
11b2796bcbSflorian	account key "/etc/acme/letsencrypt-staging-privkey.pem"
12b2796bcbSflorian}
13b2796bcbSflorian
146736ff2bSflorianauthority buypass {
156736ff2bSflorian	api url "https://api.buypass.com/acme/directory"
166736ff2bSflorian	account key "/etc/acme/buypass-privkey.pem"
176736ff2bSflorian	contact "mailto:me@example.com"
186736ff2bSflorian}
196736ff2bSflorian
206736ff2bSflorianauthority buypass-test {
216736ff2bSflorian	api url "https://api.test4.buypass.no/acme/directory"
226736ff2bSflorian	account key "/etc/acme/buypass-test-privkey.pem"
236736ff2bSflorian	contact "mailto:me@example.com"
246736ff2bSflorian}
256736ff2bSflorian
26b2796bcbSfloriandomain example.com {
27b2796bcbSflorian	alternative names { secure.example.com }
28b2796bcbSflorian	domain key "/etc/ssl/private/example.com.key"
29b2796bcbSflorian	domain full chain certificate "/etc/ssl/example.com.fullchain.pem"
30*34982bd4Stb	# Test with the staging server to avoid aggressive rate-limiting.
31*34982bd4Stb	#sign with letsencrypt-staging
32b2796bcbSflorian	sign with letsencrypt
33b2796bcbSflorian}
34