Certbot

The Certbot package automates Let’s Encrypt TLS certificate issuance and renewal via DNS-01 challenge.

Installation

Tabs

The user interface is divided into two tabs.

Certificate

Displays the currently active NAS certificate: issuer, common name (CN), validity dates. Includes a reminder to configure the Certbot certificate as the default in the NAS Certificate Manager. A Renew button triggers an immediate renewal tentative and a Download button saves the certificate files locally. If certificate is not yet due to renew, no new certificate will issued.

Settings

Configures the renewal parameters: the list of domains to certify, the DNS provider (currently OVH), and provider-specific credentials (endpoint, application key, application secret, consumer key). An Advanced section allows overriding the full certbot command line for non-standard setups.