Sign CSR with LetsEncrypt Wild card cert












0














I have successfully requested a wildcard cert for a domain I own.
Now I want to use a subdomain CNAME (manager.<MY_DOMAIN>.com) to be used on a different machine.



I've created a CSR from that machine and now I guess I need to sign this CSR somehow from my machine, where the wildcard cert is located.



However I don't know how.



I am using Ubuntu 14.04 Server and my letsencrypt cert is under /etc/letsencrypt/



Cheers










share|improve this question



























    0














    I have successfully requested a wildcard cert for a domain I own.
    Now I want to use a subdomain CNAME (manager.<MY_DOMAIN>.com) to be used on a different machine.



    I've created a CSR from that machine and now I guess I need to sign this CSR somehow from my machine, where the wildcard cert is located.



    However I don't know how.



    I am using Ubuntu 14.04 Server and my letsencrypt cert is under /etc/letsencrypt/



    Cheers










    share|improve this question

























      0












      0








      0







      I have successfully requested a wildcard cert for a domain I own.
      Now I want to use a subdomain CNAME (manager.<MY_DOMAIN>.com) to be used on a different machine.



      I've created a CSR from that machine and now I guess I need to sign this CSR somehow from my machine, where the wildcard cert is located.



      However I don't know how.



      I am using Ubuntu 14.04 Server and my letsencrypt cert is under /etc/letsencrypt/



      Cheers










      share|improve this question













      I have successfully requested a wildcard cert for a domain I own.
      Now I want to use a subdomain CNAME (manager.<MY_DOMAIN>.com) to be used on a different machine.



      I've created a CSR from that machine and now I guess I need to sign this CSR somehow from my machine, where the wildcard cert is located.



      However I don't know how.



      I am using Ubuntu 14.04 Server and my letsencrypt cert is under /etc/letsencrypt/



      Cheers







      linux ssl-certificate lets-encrypt






      share|improve this question













      share|improve this question











      share|improve this question




      share|improve this question










      asked Nov 19 '18 at 14:21









      Oliver Koehler

      2842316




      2842316
























          2 Answers
          2






          active

          oldest

          votes


















          0














          The signing is done by the CA (in this case, Let's Encrypt). You must submit the CSR to them.






          share|improve this answer





























            0














            If you already have a wildcard cert for *.example.com then you do not need another cert for subdomain.example.com. Just use the certificate and key files for *.example.com.



            It is still valid to have a separate cert for specific subdomains though, so if you do not wish to use the wildcard *.example.com certificate files just follow the same process to get a new cert for subdomain.example.com specifically.






            share|improve this answer





















              Your Answer






              StackExchange.ifUsing("editor", function () {
              StackExchange.using("externalEditor", function () {
              StackExchange.using("snippets", function () {
              StackExchange.snippets.init();
              });
              });
              }, "code-snippets");

              StackExchange.ready(function() {
              var channelOptions = {
              tags: "".split(" "),
              id: "1"
              };
              initTagRenderer("".split(" "), "".split(" "), channelOptions);

              StackExchange.using("externalEditor", function() {
              // Have to fire editor after snippets, if snippets enabled
              if (StackExchange.settings.snippets.snippetsEnabled) {
              StackExchange.using("snippets", function() {
              createEditor();
              });
              }
              else {
              createEditor();
              }
              });

              function createEditor() {
              StackExchange.prepareEditor({
              heartbeatType: 'answer',
              autoActivateHeartbeat: false,
              convertImagesToLinks: true,
              noModals: true,
              showLowRepImageUploadWarning: true,
              reputationToPostImages: 10,
              bindNavPrevention: true,
              postfix: "",
              imageUploader: {
              brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
              contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
              allowUrls: true
              },
              onDemand: true,
              discardSelector: ".discard-answer"
              ,immediatelyShowMarkdownHelp:true
              });


              }
              });














              draft saved

              draft discarded


















              StackExchange.ready(
              function () {
              StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53376626%2fsign-csr-with-letsencrypt-wild-card-cert%23new-answer', 'question_page');
              }
              );

              Post as a guest















              Required, but never shown

























              2 Answers
              2






              active

              oldest

              votes








              2 Answers
              2






              active

              oldest

              votes









              active

              oldest

              votes






              active

              oldest

              votes









              0














              The signing is done by the CA (in this case, Let's Encrypt). You must submit the CSR to them.






              share|improve this answer


























                0














                The signing is done by the CA (in this case, Let's Encrypt). You must submit the CSR to them.






                share|improve this answer
























                  0












                  0








                  0






                  The signing is done by the CA (in this case, Let's Encrypt). You must submit the CSR to them.






                  share|improve this answer












                  The signing is done by the CA (in this case, Let's Encrypt). You must submit the CSR to them.







                  share|improve this answer












                  share|improve this answer



                  share|improve this answer










                  answered Nov 19 '18 at 14:51









                  Ricardo Branco

                  3,2221614




                  3,2221614

























                      0














                      If you already have a wildcard cert for *.example.com then you do not need another cert for subdomain.example.com. Just use the certificate and key files for *.example.com.



                      It is still valid to have a separate cert for specific subdomains though, so if you do not wish to use the wildcard *.example.com certificate files just follow the same process to get a new cert for subdomain.example.com specifically.






                      share|improve this answer


























                        0














                        If you already have a wildcard cert for *.example.com then you do not need another cert for subdomain.example.com. Just use the certificate and key files for *.example.com.



                        It is still valid to have a separate cert for specific subdomains though, so if you do not wish to use the wildcard *.example.com certificate files just follow the same process to get a new cert for subdomain.example.com specifically.






                        share|improve this answer
























                          0












                          0








                          0






                          If you already have a wildcard cert for *.example.com then you do not need another cert for subdomain.example.com. Just use the certificate and key files for *.example.com.



                          It is still valid to have a separate cert for specific subdomains though, so if you do not wish to use the wildcard *.example.com certificate files just follow the same process to get a new cert for subdomain.example.com specifically.






                          share|improve this answer












                          If you already have a wildcard cert for *.example.com then you do not need another cert for subdomain.example.com. Just use the certificate and key files for *.example.com.



                          It is still valid to have a separate cert for specific subdomains though, so if you do not wish to use the wildcard *.example.com certificate files just follow the same process to get a new cert for subdomain.example.com specifically.







                          share|improve this answer












                          share|improve this answer



                          share|improve this answer










                          answered Nov 19 '18 at 21:13









                          grifferz

                          1566




                          1566






























                              draft saved

                              draft discarded




















































                              Thanks for contributing an answer to Stack Overflow!


                              • Please be sure to answer the question. Provide details and share your research!

                              But avoid



                              • Asking for help, clarification, or responding to other answers.

                              • Making statements based on opinion; back them up with references or personal experience.


                              To learn more, see our tips on writing great answers.





                              Some of your past answers have not been well-received, and you're in danger of being blocked from answering.


                              Please pay close attention to the following guidance:


                              • Please be sure to answer the question. Provide details and share your research!

                              But avoid



                              • Asking for help, clarification, or responding to other answers.

                              • Making statements based on opinion; back them up with references or personal experience.


                              To learn more, see our tips on writing great answers.




                              draft saved


                              draft discarded














                              StackExchange.ready(
                              function () {
                              StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53376626%2fsign-csr-with-letsencrypt-wild-card-cert%23new-answer', 'question_page');
                              }
                              );

                              Post as a guest















                              Required, but never shown





















































                              Required, but never shown














                              Required, but never shown












                              Required, but never shown







                              Required, but never shown

































                              Required, but never shown














                              Required, but never shown












                              Required, but never shown







                              Required, but never shown







                              Popular posts from this blog

                              MongoDB - Not Authorized To Execute Command

                              How to fix TextFormField cause rebuild widget in Flutter

                              in spring boot 2.1 many test slices are not allowed anymore due to multiple @BootstrapWith