Update 'installer.sh'

This commit is contained in:
b.waal
2019-08-29 14:43:30 +02:00
parent ed34758752
commit db6ea97ba1

View File

@@ -223,7 +223,8 @@ apt install -y python-certbot-nginx
mkdir -p /etc/letsencrypt/live/$domain/ mkdir -p /etc/letsencrypt/live/$domain/
certbot --nginx -n -d "$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos certbot --nginx -n -d "$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
echo "certbot --nginx -n -d $domain -m $email --hsts --redirect --no-eff-email --agree-tos" > ~/certbotactivate.sh echo "certbot --nginx -n -d $domain -m $email --hsts --redirect --no-eff-email --agree-tos" > ~/certbotactivate.sh
sed -i -e 's/ssl ipv6only/ssl http2 ipv6only/' -e 's/listen 443 ssl/listen 443 ssl http2/' /etc/nginx/sites-available/"$domain" sed -i 's/ssl ipv6only/ssl http2 ipv6only/g' /etc/nginx/sites-available/"$domain"
sed -i 's/listen 443 ssl/listen 443 ssl http2/g' /etc/nginx/sites-available/"$domain"
sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain" sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain"
openssl dhparam -out /etc/ssl/certs/dhparam.pem 1024 openssl dhparam -out /etc/ssl/certs/dhparam.pem 1024
chmod 755 -R /etc/ssl/certs/dhparam.pem chmod 755 -R /etc/ssl/certs/dhparam.pem