Support for ACME/Let's Encrypt certificate management

As subject, it would be great if ROS supported the new ACME-protocol for managing browser-trusted certificates from Let’s Encrypt.

Let’s Encrypt: https://letsencrypt.org/

Protocol spec: https://github.com/letsencrypt/acme-spec

Presentation at 31c3 on Tuesday: http://youtu.be/OZyXx8Ie4pA ← start here if you’ve not heard of this before!

+1 vote up

+1 vote up

+1 :slight_smile:

Mikrotik Team, please consider adding support of letsencrypt free SSL certificates.
Entering Public Beta

Thank you!

+1 :smiley:

+1 too

+1 - would like this too

This would be a great feature. Configure a couple of hostnames you want certificates for, and then have the firewall automatically request/renew them with letsencrypt.org. This will save a lot of time, especially when using services that require a valid certificate such as SSTP VPN’s.

I +1 on this too :smiley:

+1

Sent from my Nexus 6P using Tapatalk

I agree but isn’t Let’s Encrypt certificates www-only?

No, they are “certificats”, can be use on anything (firewall, mail, ftp, etc…). The only “problem” is that they are 90 days lifetime… so without ACME, you’ll have to update the cert manually each 3 month. Certs are actually working right now if you do install it manually.

+1 for sure

+1 my vote

also simple and neat ability to create and manage separate certs blacklists(including automated with scripts/scheduler from remote source oudate of it) “just in case” - would help a lot, too.

We are looking into it. No promises.

Thank you. let us up to date.

+1 :slight_smile:

I too +1