Metadata-Version: 2.1
Name: acmens
Version: 0.1.5
Summary: A simple ACMEv2 client. Fork of acme-nosudo.
Home-page: https://github.com/r5d/acmens
Author: siddharth
Author-email: s@ricketyspace.net
License: GNU Affero General Public License v3
Description: # acmens
        
        A fork of [acme-nosudo][]. It uses ACMEv2 protocol and requires Python 3.
        
        [acme-nosudo]: https://github.com/diafygi/acme-nosudo
        
        `acmens` may be used for getting a new SSL certificate, renewing a SSL
        certificate for a domain, and revoking a certificate for a domain.
        
        It's meant to be run locally from your computer.
        
        ## prerequisites
        
        * openssl or libressl
        * python3
        * pip
        
        ## installation
        
        ```sh
        pip install acmens
        ```
        
        ## getting/renewing a certificate
        
        First, generate an user account key for Let's Encrypt:
        
        ```sh
        openssl genrsa -aes256 4096 > user.key
        openssl rsa -in user.key -pubout > user.pub
        ```
        
        Next, generate the domain key and a certificate request:
        
        ```sh
        # Generate domain key
        openssl genrsa -aes256 -out domain.key 4096
        
        # Generate CSR for a single domain
        openssl req -new -sha256 -key domain.key -out domain.csr
        
        # Or Generate CSR for multiple domains
        openssl req -new -sha256 -key domain.key -subj "/" -addext "subjectAltName = DNS:example.com, DNS:www.example.com" > domain.csr
        ```
        
        Lastly, run `acmens`:
        
        ```sh
        acmens --account-key user.key --email mail@example.com --csr domain.csr > signed.crt
        ```
        ## dns challenge
        
        If you want to use the DNS challenge type provide it using the `--challenge` flag.
        
        ```sh
        acmens --account-key user.key --email mail@example.com --challenge dns --csr domain.csr > signed.crt
        ```
        
        This will prompt you to update the DNS records to add a TXT record.
        
        ## revoking a certificate
        
        This:
        
        ```sh
        acmens --revoke -k user.key --crt signed.crt
        ```
        
        will revoke SSL certificate in `signed.crt`.
        
Keywords: acme letsencrypt acmens
Platform: UNKNOWN
Classifier: Development Status :: 2 - Pre-Alpha
Classifier: Environment :: Console
Classifier: Intended Audience :: Developers
Classifier: Intended Audience :: End Users/Desktop
Classifier: License :: OSI Approved :: GNU Affero General Public License v3
Classifier: Operating System :: POSIX :: BSD
Classifier: Operating System :: POSIX :: Linux
Classifier: Operating System :: MacOS
Classifier: Programming Language :: Python :: 3 :: Only
Classifier: Topic :: System :: Systems Administration
Classifier: Topic :: Utilities
Requires-Python: >=3
Description-Content-Type: text/markdown
