letsencrypt-plesk icon indicating copy to clipboard operation
letsencrypt-plesk copied to clipboard

Feature Request: Wildcard subdomain support

Open enekochan opened this issue 7 years ago • 16 comments

Since January 4 2018 Let's Encrypt introduced a public test API endpoint for the ACME v2 protocol and wildcard support:

https://letsencrypt.org/2017/07/06/wildcard-certificates-coming-jan-2018.html https://community.letsencrypt.org/t/acme-sh-supports-acme-v2-wildcard-now/49685

Is there any plan on adding this feature for this extension? If so, when could we expect to have it released? Thank you!

enekochan avatar Jan 10 '18 00:01 enekochan

Hi, no ETA for now.

rkosolapov avatar Jan 10 '18 03:01 rkosolapov

It's alive: https://community.letsencrypt.org/t/acme-v2-and-wildcard-certificate-support-is-live/55579

mrclschstr avatar Mar 14 '18 06:03 mrclschstr

This would be very useful to implement. The sooner the better :)

ioweb-gr avatar Mar 15 '18 07:03 ioweb-gr

I agree and hope you allow to use external name servers

CHfish-ch avatar Mar 16 '18 13:03 CHfish-ch

@rkosolapov Can this now be achieved using the command line in some way until it's supported from the Plesk control panel or using the Plesk plugin for Let's Encrypt and the command line are mutually excluding?

enekochan avatar Mar 18 '18 02:03 enekochan

Any hope for implementing this feature sooner?

mahony0 avatar Mar 24 '18 11:03 mahony0

@enekochan you can use third-party client to get a wildcard certificate. Plesk will not touch it (there is a little nuance - the name of the certificate should not begin with "Let's Encrypt").

Regarding the feature implementation - first version is planned to be released soon (next month maybe), that release will cover basic scenarios only.

@CHfish-ch, could you describe your case with external name servers? Do you mean your DNS servers are not synchronised with DNS zones in Plesk? Looks like we can't automate this case, the only thing we can do - provide an instruction what DNS record should be added to the zone.

rkosolapov avatar Mar 27 '18 06:03 rkosolapov

@rkosolapov Indeed: My providers DNS servers are not synced with Plesk - but I'd be willing to manually add the requested entry to DNS if it is displayed... So thank you for adding such an option!

CHfish-ch avatar Mar 27 '18 06:03 CHfish-ch

Would fix #197 when on a subdomain.

digitall-it avatar Apr 05 '18 08:04 digitall-it

@rkosolapov what about it ?

ghost avatar May 01 '18 08:05 ghost

The final announcement of the ACMEv2 release with wildcard support: https://community.letsencrypt.org/t/acme-v2-and-wildcard-certificate-support-is-live/55579

Some technical information about ACMEv2: https://community.letsencrypt.org/t/acme-v2-production-environment-wildcards/55578

enekochan avatar May 03 '18 18:05 enekochan

Is this feature planned for the Plesk extension?

MrSnoozles avatar Jun 07 '18 11:06 MrSnoozles

@MrSnoozles https://support.plesk.com/hc/en-us/articles/115000490174/comments/360000314893

Patta avatar Jun 08 '18 07:06 Patta

It's in. Check the link above

Patta avatar Jul 09 '18 20:07 Patta

Too bad the domains still do not renew automatically yet.

digitall-it avatar Jul 09 '18 20:07 digitall-it

wildcard option still broken and the workaround instructions (link below) don't work because you can no longer uncheck the aliases options (they get checked and disabled when checking wildcard option).

https://support.plesk.com/hc/en-us/articles/360008040893-www-alias-subdomains-are-not-included-into-the-issued-wildcard-Let-s-Encrypt-Certificate

would've followed the manual instructions here: https://talk.plesk.com/threads/lets-encrypt-wildcard-certificates.347562/

but unfortunately I have to wait a week now because I got hit by the renewal rate-limit bug described in: https://github.com/plesk/letsencrypt-plesk/issues/207

tamer-hassan avatar May 21 '19 19:05 tamer-hassan