Matomo Analytics

Documentation

How do I request a Let's Encrypt certificate for a load balancer?

Before you can request a Let's Encrypt certificate for your load balancer, the domain must already point to the load balancer. Let's Encrypt validates...

Before you can request a Let's Encrypt certificate for your load balancer, the domain must already point to the load balancer. Let's Encrypt validates that you control the domain, so the request will fail if DNS still points elsewhere.

Steps

  1. At your DNS provider, point the domain's A record to your load balancer's IP address and wait for it to propagate.
  2. In Ploi, open your load balancer and go to the certificate (SSL) section.
  3. Request a Let's Encrypt certificate for the domain.

Ploi validates the certificate using an HTTP-01 challenge on port 8888 of the load balancer, so make sure that port isn't blocked by an external firewall. Once issued, the certificate is installed on the load balancer (HAProxy) and Ploi sets up automatic renewal for you.

For more background on Let's Encrypt certificates, see How do I request a Let's Encrypt certificate?

Dennis Smink

Written by Dennis Smink

Dennis brings over 13 years of hands-on experience in server management, specializing in optimizing web services for scalability and security.

Ready to dive in?
Start your free trial today.

Create an account and enjoy your 5-day free trial — no credit card required.

Start your free trial