Update SSLnletsencrypt.md
dinger1986 committed
Sep 9, 2022 at 15:46 UTC
808345eb3fbaa72d84c11b8fda64c68446ed9da0
1 file changed
+8
-20
docs/docs/meshcentral/SSLnletsencrypt.md
+8
-20
@@ -1,27 +1,15 @@
1
# SSL/Letsencrypt
2
3
-## Help! I've been hacked there are weird agents appearing in my MeshCentral Console
3
+## MeshCentral supports SSL using self generated certs, your own certs or Letsencrypt
4
5
-No, you haven't.
5
+### To enable Letsencrypt do the following in your config.json file:
6
7
-1. Your agent installer was scanned by an antivirus.
7
+1. Under Settings, change `"_redirPort"` to `"redirPort"` and `"_cert" to `"cert": "yourdomain.com",
8
+2. Under letsencrypt change `"_letsencrypt"` to `"letsencrypt"`, enter your email address at `"email"` and yourdomain.com for `"names"` and change `"production"` to true.
9
+3. Restart meshcentral and it will get a cert for you, the process will need to restart to apply the cert.
10
9
-2. It didn't recognize the exe.
11
+### Useful resources/troubleshooting
12
11
-3. You have the option enabled to submit unknown applications for analysis.
13
+To check letsencrypt is working properly please use https://letsdebug.net/
14
13
- 
14
-
15
-4. They ran it against their virtualization testing cluster.
16
-
17
-5. You allow anyone to connect to your server (you should look into techniques to hide your server from the internet).
18
-
19
-6. Here are some examples of what that looks like.
20
-
21
-# Can't login on server after first setup
22
-
23
-You're sure you're typing in everything right, giving it 2FA code and can't login
24
-
25
-[TOTP](https://en.wikipedia.org/wiki/Time-based_one-time_password) is time sensitive, check your time/NTP and make sure it's right (on server and TOTP app device)! :)
26
-
27
-
15
+Also make sure you have port 80 open and pointing to your meshcentral server, IT WILL NOT work if port 80 isnt open and it HAS to be port 80.