From 4c340cbeb82d5f75313a9408cd770c37b7cab5c5 Mon Sep 17 00:00:00 2001 From: Griffin Smith Date: Thu, 16 Jul 2020 11:43:19 -0400 Subject: feat(gws.fyi): Reimport cert after renewing Change-Id: Iebd5c9bc3a62838a862cc4b37b2f43f62ad8018e Reviewed-on: https://cl.tvl.fyi/c/depot/+/1213 Reviewed-by: glittershark Tested-by: BuildkiteCI --- users/glittershark/gws.fyi/Makefile | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) (limited to 'users') diff --git a/users/glittershark/gws.fyi/Makefile b/users/glittershark/gws.fyi/Makefile index 9760c93f26..37bbdda11d 100644 --- a/users/glittershark/gws.fyi/Makefile +++ b/users/glittershark/gws.fyi/Makefile @@ -5,14 +5,22 @@ deploy: renew: @echo Renewing... - @certbot renew \ + @certbot certonly \ --manual \ + --domain gws.fyi \ --preferred-challenges dns \ --server https://acme-v02.api.letsencrypt.org/directory \ --agree-tos \ --work-dir $(shell pwd)/letsencrypt/work \ --logs-dir $(shell pwd)/letsencrypt/logs \ --config-dir $(shell pwd)/letsencrypt/config + @echo "Reimporting certificate" + @aws acm import-certificate \ + --certificate file://letsencrypt/config/live/gws.fyi/cert.pem \ + --certificate-chain file://letsencrypt/config/live/gws.fyi/fullchain.pem \ + --private-key file://letsencrypt/config/live/gws.fyi/privkey.pem \ + --certificate-arn arn:aws:acm:us-east-1:797089351721:certificate/628e54f3-55f9-49c0-811a-eba516b68e30 \ + --region us-east-1 backup: @tarsnap -cf $(shell uname -n)-letsencrypt-$(shell date +%Y-%m-%d_%H-%M-%S) \ -- cgit 1.4.1