{"repo":"nginx-proxy/acme-companion","free":true,"listed":false,"github":"https://github.com/nginx-proxy/acme-companion","clone":"git clone https://github.com/nginx-proxy/acme-companion.git","description":"Automated ACME SSL certificate generation for nginx-proxy","language":"Shell","stars":7723,"topics":["nginx-proxy","letsencrypt","docker","ssl","acme","acme-v2","acme-protocol","buypass","zerossl"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"acme-companion acme-companion is a lightweight companion container for nginx-proxy . It handles the automated creation, renewal and use of SSL certificates for proxied Docker containers through the ACME protocol. Features: Automated creation/renewal of Let's Encrypt (or other ACME CAs) certificates using acme.sh . Let's Encrypt / ACME domain validation through HTTP-01 (by default) or DNS-01 challenge. Automated update and reload of nginx config on certificate creation/renewal. Support creation of Multi-Domain (SAN) Certificates. Support creation of Wildcard Certificates (with DNS-01 challenge only). Creation of a strong RFC7919 Diffie-Hellman Group at startup. Work with all versions of docker. HTTP-01 challenge requirements: Your host must be publicly reachable on both port 80 and 443 . Check your firewall rules and do not attempt to block port 80 as that will prevent HTTP-01 challenges from completing. For the same reason, you can't use nginx-proxy's HTTPS METHOD=nohttp . The (sub)domains you want to issue certificates for must correctly resolve to the host. If your (sub)domains have AAAA records set, the host must be publicly reachable over IPv6 on port 80 and 443 . If you can't meet these requirements, you can use the DNS-01 challenge instead. Please refer to the documentation for more information. In addition to the above, please ensure that your DNS provider answers correctly to CAA record requests. If your DNS provider answer with an error, Let's Encrypt won't issue a c","default_branch":null,"files":null,"tree":[],"storefront":"/r/nginx-proxy","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/nginx-proxy/acme-companion/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}