Your page at https://letsencrypt.org/docs/caa/ is very informative. However, it should have a sample zone file section with the proper placement and wording of the record.
If others are like me, they can’t make heads or tails about it.
Thank you.
Your page at https://letsencrypt.org/docs/caa/ is very informative. However, it should have a sample zone file section with the proper placement and wording of the record.
If others are like me, they can’t make heads or tails about it.
Thank you.
What's wrong with the SSLMate’s CAA Record Generator, as linked in the document you reference?
SSLMate is limited.
I have two CAA records (domain server-daten.de)
CAA issue "letsencrypt.org; accounturi=https://acme-v02.api.letsencrypt.org/acme/acct/35657966"
CAA issue "letsencrypt.org; accounturi=https://acme-staging-v02.api.letsencrypt.org/acme/acct/5532373"
First is my productive account, second my stage account.
SSLMate says:
server-daten.de has a complicated CAA policy that this tool doesn't support: issue and issuewild parameters are not supported
If I add a number at the end of the accounturi - parameter, Letsencrypt blocks.