diff options
| author | Lexi Winter <ivy@FreeBSD.org> | 2025-06-04 10:42:19 +0100 |
|---|---|---|
| committer | Lexi Winter <ivy@FreeBSD.org> | 2025-06-04 10:56:04 +0100 |
| commit | 15010d062ae276a92065cd6ea7dc94b749e20756 (patch) | |
| tree | 8745f89f933826afbb329b4fc447186a1200610d /dns.sh | |
| parent | 09aa3870070960d37d7bdbb724f4ac7b68395fdf (diff) | |
| download | lfacme-15010d062ae276a92065cd6ea7dc94b749e20756.tar.gz lfacme-15010d062ae276a92065cd6ea7dc94b749e20756.tar.bz2 | |
allow PREFIX to be customised
Diffstat (limited to 'dns.sh')
| -rw-r--r-- | dns.sh | 78 |
1 files changed, 0 insertions, 78 deletions
@@ -1,78 +0,0 @@ -#! /bin/sh -# This source code is released into the public domain. - -. /usr/local/share/lfacme/init.sh -. /usr/local/share/lfacme/dnsutils.sh - -# begin, done or failed -ACTION=$1 -# ACME method, must be dns-01. -METHOD=$2 -# This is the full domain name we're authorising. -DOMAIN=$3 -# Token name, not used for dns-01. -TOKEN=$4 -# The token value we need to create. -AUTH=$5 - -if [ "$#" -ne 5 ]; then - _fatal "missing arguments" -fi - -if [ "$METHOD" != "dns-01" ]; then - exit 1 -fi - -if [ -z "$ACME_DNS_KEYFILE" ]; then - _fatal "ACME_DNS_KEYFILE not configured" -fi - -# Add a new record using nsupdate. -_add_record() { - local domain="$1" - local auth="$2" - - nsupdate -k "$ACME_DNS_KEYFILE" <<EOF -update add _acme-challenge.${DOMAIN}. 300 IN TXT "${AUTH}" -send -EOF - return $? -} - -# Remove an existing record using nsupdate. -_remove_record() { - local domain="$1" - local auth="$2" - - nsupdate -k "$ACME_DNS_KEYFILE" <<EOF -update delete _acme-challenge.${DOMAIN}. 300 IN TXT "${AUTH}" -send -EOF - return $? -} - -case "$ACTION" in - begin) - if ! _add_record "$DOMAIN" "$AUTH"; then - _fatal "failed to add the DNS record for %s" "$DOMAIN" - exit 1 - fi - - if ! lfacme_dns_wait_for_record "$DOMAIN" "$AUTH"; then - _fatal "timed out waiting for the DNS record for '%s' to be published" \ - "$DOMAIN" - exit 1 - fi - - exit 0 - ;; - - done|failed) - _remove_record "$DOMAIN" "$AUTH" - exit $? - ;; - - *) - _fatal "unknown action: %s" "$ACTION" - ;; -esac |
