token.txt in the script folder
Run the generation command:
./client.sh get_certificate <domain.dn42>
signed.crt and server.key in your
webserver
Get a certificate entirely within your browser. No local scripts required.
Online Certificate System* Note: Renewals must be performed manually.
When you request a certificate for one or more domains and/or IP addresses, your request is validated against the following rules:
The combined number of domains and IP addresses must not exceed 40.
*.example.dn42)
are always resolved via their authoritative name server's glue records
(no standard DNS resolution is attempted).
For every IP address derived from the steps above (whether from direct IP input, domain resolution, or name server glue), the system checks:
If at least one of the IP addresses associated with a given domain or IP input is covered by a route object that lists your ASN, that domain/IP is considered authorized.