pfSense - Dynamic DuckDNS - ACME - Let’s Encrypt Certificate - Question

This resolved my issue (same as your output)

  • use Domain Alias in the configuration
    – services → acme_certificates-> edit → Domain SAN list-> expand →
    Enable DNS domain alias mode: check the box
    Enable DNS alias mode: add <yourdomain>.duckdns.org were <yourdomain> is your DuckDNS name
  • Save
  • Renew cert
Common Name: yourdomain.duckdns.org I think you can even use a wildcard
DNS Alias Mode: Domain Alias Mode
Domain Alias: yourdomain.duckdns.org
1 Like