v2.2.5.1538
版本发布时间: 2023-06-07 21:24:53
win-acme/win-acme最新发布版本:v2.2.9.1701(2024-05-26 03:07:35)
New features
- New command line argument
--register
which can be used to set up a new ACME account in unattended mode without the need to immediately create a certificate. Based on feedback from @ArthurHNL (#2391). - A new setting
Order.DefaultValidDays
can now be used to request certificates that are valid for a shorter time than the default offered by the server. Note that this is not supported by Let's Encrypt at this point, but it should work for Sectigo among others. Requested by @timothyd09 (#2394) - Customize the CSR signature algorithm using the settings
Csr.Rsa.SignatureAlgorithm
andCsr.Ec.SignatureAlgorithm
. The defaults remain unchanged atSHA512withRSA
andSHA512withEHDSA
respectivky. As requested by @julieolson-gs (#2385).
Enhancements
- The DNS resolver has been refactored to fall back to the default servers whenever authoritative servers cannot be found or contacted. This makes the algorithm more robust in firewalled, misconfigured or other exceptional network environments. On a related note, for new installations, we now also default to the local system DNS instead of trusted external ones like Google (8.8.8.8), which will also prevent users in secured environments from running into issues (based on feedback by @jamesarbrown #2389).
- Azure DNS validation now requires fewer permissions. Specifically it should not be neccessary to give the application read access to the Resource Group anymore. Based on feedback and testing be @sveng-r (#2372).
- When the program fails to send an email notification, the SMTP messages will be shown to allow for easier troubleshooting. Suggested by @Zennate (#2388).
- GoDaddy DNS validation makes it mandatory to provide an API secret. Legacy authentication using only an API key appears to have been deprecated by this provider. Noticed by @rafalsk in #2376.
- Amazon/AWS Route53 DNS validation prompts and messaging is now more clear about expecting an IAM name instead of an ARN, preventing users like @TheSkorm from getting headaches while trying to guess at this (#2378).
- RFC2136 DNS validation has learned to lookup server host names, so that it's no longer required to configure an IP address (#2364, thanks for testing @JensSpanier).
- RFC2136 DNS validation will now try to update/create records in different zones. E.g. if the record
_acme-challenge.www.example.com
cannot be created in the zoneexample.com
(e.g. because it doesn't exist), it will also try to created it in the zonewww.example.com
(based on feedback by @jamesarbrown #2389). - Update various third party dependencies and remove some superfluous ones.
Bug fixes
- The "More options" menu can be used to do inital account setup again, a feature that got lost in v2.2.3 (#2367, reported by @amuen2b).
- Setting
ScheduledTask.RenewalMinimumValidDays
didn't have the desired effect anymore since v2.3.3 (#2371, reported by @marconfus). - In some rare cases the error message
The added or subtracted value results in an un-representable DateTime
could appear when loading renewals after an upgrade, reported by @akuropa. - The private key would not be including in generated certificate if/when an ACME server decides to preface the PEM data with a comment, as was the case for @Moechen in #2342.
- The program would fail to parse certificates when Windows is configured to use the Thai locale. Thanks to @baxing for reporting this (#2370).
- RFC2136 DNS validation would not clean up records after validation (#2364, thanks for testing @JensSpanier).
- The program would did not import intermediate certificates since v2.1.18, thanks for the PR and bug report @AlexanderS.
Sponsors
This release was funded by
One gold sponsor:
Two silver sponsors:
And four bronze sponsors:
- e-shop LTD
- The Proof Group @proofgroup
- imagenia.fr
- Certify the web
Support
If you want professional support for win-acme, your company up here in the release notes, or just want to buy me (@WouterTinus) a beer for maintaining this tool, please sponsor using GitHub Sponsors, Patreon or PayPal.
1、 mscordbi.v2.2.5.1538.arm64.zip 508.27KB
2、 mscordbi.v2.2.5.1538.x64.zip 511.93KB
3、 mscordbi.v2.2.5.1538.x86.zip 440.41KB
4、 plugin.store.keyvault.v2.2.5.1538.zip 1.14MB
5、 plugin.store.userstore.v2.2.5.1538.zip 9.24KB
6、 plugin.validation.dns.azure.v2.2.5.1538.zip 1.07MB
7、 plugin.validation.dns.cloudflare.v2.2.5.1538.zip 298.53KB
8、 plugin.validation.dns.digitalocean.v2.2.5.1538.zip 392.32KB
9、 plugin.validation.dns.dnsmadeeasy.v2.2.5.1538.zip 279.45KB
10、 plugin.validation.dns.domeneshop.v2.2.5.1538.zip 59.98KB
11、 plugin.validation.dns.dreamhost.v2.2.5.1538.zip 12.12KB
12、 plugin.validation.dns.godaddy.v2.2.5.1538.zip 276.8KB
13、 plugin.validation.dns.googledns.v2.2.5.1538.zip 202.94KB
14、 plugin.validation.dns.infomaniak.v2.2.5.1538.zip 277.91KB
15、 plugin.validation.dns.linode.v2.2.5.1538.zip 278.38KB
16、 plugin.validation.dns.luadns.v2.2.5.1538.zip 12.82KB
17、 plugin.validation.dns.ns1.v2.2.5.1538.zip 13.81KB
18、 plugin.validation.dns.rfc2136.v2.2.5.1538.zip 169.62KB
19、 plugin.validation.dns.route53.v2.2.5.1538.zip 477.55KB
20、 plugin.validation.dns.simply.v2.2.5.1538.zip 16.59KB
21、 plugin.validation.dns.transip.v2.2.5.1538.zip 285.75KB
22、 plugin.validation.http.rest.v2.2.5.1538.zip 12.45KB
23、 win-acme.v2.2.5.1538.arm64.pluggable.zip 35.46MB
24、 win-acme.v2.2.5.1538.arm64.trimmed.zip 13.35MB
25、 win-acme.v2.2.5.1538.x64.pluggable.zip 36.45MB
26、 win-acme.v2.2.5.1538.x64.trimmed.zip 13.61MB
27、 win-acme.v2.2.5.1538.x86.pluggable.zip 34.11MB
28、 win-acme.v2.2.5.1538.x86.trimmed.zip 12.95MB