Wednesday, 13 September 2023

LetsEncrypt failure on Draytek Routers

 We like to use Draytek Routers on our installs as they are easy to configure and tend to be reliable.

As with all things these days https secure connections have been enforced by Chrome and the browser world. This means the routers have to be accessed on https.  This then complicates things as you then need a valid ssl certificate.

Draytek have built in a LetsEncrypt client in their routers, so we use DynDDNS and LetsEncrypt in order to give the router a certificate.  To obscure things further we changed the ssl port away from 443.

All this worked fine until LetsEncrypt changed things. Ou certificates would not renew. It used to be that LetsEncrypt renewd on port 80, but to get things working again we had to change the secure  port back to 443. Suddenly we could renew the cert.

Keep that in mind. To use a Draytek with LetsEncrypt you now need ssl on port 443!


John Rogers

www.oneszeros.biz

Getting Mitel 69xx Phones connected to MiVoice Business

'I don't know why I haven't recorded this sooner. I have to go looking for it in various forums every time I touch one of these ...