started · updated
Let's Encrypt and ACME protocol enable automated HTTPS certificate management
The launch of Let's Encrypt, a zero-cost X.509 Certificate Authority, is facilitating the automation of HTTPS server certificates through the Automated Certificate Management Environment (ACME) protocol. This transition aims to replace manual, error-prone certificate processes with automated creation and retrieval.
Web server software such as Caddy is utilizing these protocols to automate TLS certificate issuance and renewal. Caddy supports authorities like Let's Encrypt and ZeroSSL, employing HTTP or TLS-ALPN challenges for public domains. For internal hostnames, Caddy utilizes a built-in local Certificate Authority powered by Smallstep libraries to manage certificates.
Entities
ACME · Caddy · Let's Encrypt · Smallstep · ZeroSSL