ICANN set ’.internal‘ as internal domain,so how to get ssl?

I want get a domain named server.internal.
if a domain without ssl in internal network,It just a DNS rewrite.I think it's useless;

@Seele0oO , welcome to the community!

Letsencrypt provides certificate only for public domain names. You may want to use self-signed certificate for the .internal domain, or use private CA for more complex set-up.

6 Likes

Thanks for your reply.
Is there anyway force my device in home network accept private CA?
like esp8266.

1 Like

It is rather your client (for example browser) that has to accept the private CA. The private CA's root certificate must be added to the trust anchor store of the client. But that topic is beyond the scope of this forum.

5 Likes

Other way is just avoid using the .internal domain name. Get a public domain, and you can have certificates for your systems from Letsencrypt.

6 Likes

Thank you.

3 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.