# DNS-based challange for verification of LetsEncrypt/SSL-certs?

**URL:** <https://community.letsencrypt.org/t/dns-based-challange-for-verification-of-letsencrypt-ssl-certs/28561>\
**Category:** Issuance Tech\
**Created:** [February 24, 2017, 9:29am UTC](https://community.letsencrypt.org/t/dns-based-challange-for-verification-of-letsencrypt-ssl-certs/28561 "2017-02-24T09:29:27Z")\
**Posts on this page:** 1\
**Showing post:** 4

<div class="post-metadata">

**Author:** ![ahaw021](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/ahaw021/32/14882_2.png) [@ahaw021](https://community.letsencrypt.org/u/ahaw021)\
**Post date:** [February 24, 2017, 10:11am UTC](https://community.letsencrypt.org/t/dns-based-challange-for-verification-of-letsencrypt-ssl-certs/28561/4 "2017-02-24T10:11:57Z")

</div>

sorry for the sarcasm but a big fan of copy and paste 😉

[http://letsencrypt.readthedocs.io/en/latest/using.html#certbot-commands](http://letsencrypt.readthedocs.io/en/latest/using.html#certbot-commands)

–preferred-challenges PREF\_CHALLS  
A sorted, comma delimited list of the preferred  
challenge to use during authorization with the most  
preferred challenge listed first (Eg, “dns” or “tls-  
sni-01,http,dns”). Not all plugins support all  
challenges. See  
[https://certbot.eff.org/docs/using.html#plugins](https://certbot.eff.org/docs/using.html#plugins) for  
details. ACME Challenges are versioned, but if you  
pick “http” rather than “http-01”, Certbot will select  
the latest version automatically. (default: )

the manual even gives you the syntax 😃

below is how i usually do mine 😃

 ![](https://global.discourse-cdn.com/letsencrypt/original/2X/b/b833ea967fb0c9d85d6f9bd7a4368cba64edb789.PNG)

---

_[View the full topic](https://community.letsencrypt.org/t/dns-based-challange-for-verification-of-letsencrypt-ssl-certs/28561)._
