July 9, 2021 5:12 PM, "Brian Candler" <b.cand...@pobox.com> wrote:
> On 09/07/2021 15:29, inform...@trinaxab.se wrote: > >> Specifically, the intention is to use a single wildcard certificate >> *.intra.example.com rather than >> one for each subdomain. I don't know if that changes anything. > No difference. You just need to be able to insert TXT records in the zone > > _acme-challenge.intra.example.com > > to get a wildcard cert for *.intra.example.com. (Note that wildcard certs > only match one level: > e.g. "accounts.intra.example.com" will match but not > "mail.accounts.intra.example.com") How do I set this up? I haven't really worked with DNS on this level before. I find things relating to DNS updates, AXFR, TSIG and master/slave configurations, but I'm not sure which of those are relevant. _______________________________________________ Pdns-users mailing list Pdns-users@mailman.powerdns.com https://mailman.powerdns.com/mailman/listinfo/pdns-users