logoalt Hacker News

intsunnytoday at 4:55 PM3 repliesview on HN

Even before I clicked on the article, I had a strong feeling this person was using CloudFlare DNS and the related API. (They are.)

Given the immense popularity of Cloudflare DNS + API + ACME DNS-01 challenge, why are not other DNS providers stepping into this foray?


Replies

xyzzy_plughtoday at 5:02 PM

Perhaps I'm missing something but what's special about Cloudflare here?

You can use a boatload of providers for automated DNS-01.

show 1 reply
JonathonWtoday at 5:05 PM

Cloudflare is not the only DNS provider supported for DNS-01 challenges, even if you restrict yourself to only using Certbot: https://community.letsencrypt.org/t/dns-providers-who-easily...

varispeedtoday at 6:31 PM

I have not used Cloudflare for ages, but remember the Cloudflare API key couldn't be restricted to just one domain, so if someone could get hold of the key, they could have gotten access to all your domains. So that made me not use them. Has anything changed?

show 1 reply