Create the DNS-01 Credentials File
Before you upload a DNS-01 credentials file to your ACME Profile (see Upload the DNS-01 Credentials File to the ACME Profile), you must create it in JSON format. The file must meet the following requirements:
|
■
|
The file must use strict JSON format. |
|
■
|
Each key/value pair must use the following format: |
"<key>": "<value>"
For example:
"ACME_DNS_PLUGIN": "dns_azure"
|
■
|
The file can contain only LF (Line Feed) Unicode control characters. |
|
■
|
The file must include the ACME_DNS_PLUGIN key and its value. This value is the acme.sh DNS plugin name. |
|
■
|
The file must not exceed 8,192 bytes. |
DNS-01 credentials are required for the ACME Profile if the 'Challenge Type' parameter is configured to DNS-01 (see Configuring ACME Profiles).
|
➢
|
To create the JSON file with DNS-01 credentials: |
|
1.
|
Open a plain text editor, such as Notepad++. |
|
2.
|
Create a new file, and save it with a .json extension (e.g., dns-azure.json). |
|
3.
|
Go to one of the following acme.sh wiki pages: |
|
4.
|
Search the wiki page for your DNS provider (for example, Azure). |
|
5.
|
Add the ACME_DNS_PLUGIN key to your JSON file, and set its value to the string that appears after "--dns" in the provider's example command. For Azure DNS, the wiki page shows the following command: |
./acme.sh --issue --dns dns_azure -d example.com -d *.example.com
In this example, the value is dns_azure.
|
6.
|
Add the remaining required keys listed on the wiki page, and replace their placeholder values with the real values for your DNS provider account. For Azure DNS, the wiki page lists the following required keys: |
export AZUREDNS_SUBSCRIPTIONID="<SUBSCRIPTIONID>"
export AZUREDNS_TENANTID="<TENANTID>"
export AZUREDNS_APPID="<APPID>"
export AZUREDNS_CLIENTSECRET="<CLIENTSECRET>"
The following example shows a completed JSON file with DNS-01 credentials for the Microsoft Azure DNS provider:
{
"ACME_DNS_PLUGIN": "dns_azure",
"AZUREDNS_SUBSCRIPTIONID": "12345678-1234-1234-1234-123456789012",
"AZUREDNS_TENANTID": "87654321-4321-4321-4321-210987654321",
"AZUREDNS_APPID": "aaaaaaaa-bbbb-cccc-dddd-eeeeeeeeeeee",
"AZUREDNS_CLIENTSECRET": "gX4~8qKL_example_secret_value>"
}