logo

Caddy: enabling valid internal SSL certificates with ACME DNS challenge

ID: 9874f8e2-2e10-5c0e-9626-a2dcb9c0b2ee

STIX ID: report--9874f8e2-2e10-5c0e-9626-a2dcb9c0b2ee

Feed Name: KMsec blog

Date Published: 2021-08-06

Date Updated: 2026-04-19

...
...

This is a practical how-to guide showing how to provision valid SSL/TLS certificates for internal Docker services without exposing them to the internet by using Caddy's DNS ACME challenge (DigitalOcean DNS provider), a dnsmasq wildcard record, a custom-built Caddy Docker image including the digitalocean DNS module, and a docker-compose configuration to run and manage the reverse-proxy and certificates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.