Update using.rst to accurately describe acmev2 behavior (#7924)

Fixes #7268

I removed the reference to automatically selecting which ACME protocol we use, since at some point we'll want to rip out the non-spec-compliant ACMEv1 code.
This commit is contained in:
ohemorange
2020-04-21 12:47:59 -07:00
committed by GitHub
parent 6693e87500
commit 751d836746
+5 -7
View File
@@ -846,17 +846,15 @@ Example usage for DNS-01 (Cloudflare API v4) (for example purposes only, do not
Changing the ACME Server Changing the ACME Server
======================== ========================
By default, Certbot uses Let's Encrypt's initial production server at By default, Certbot uses Let's Encrypt's production server at
https://acme-v01.api.letsencrypt.org/. You can tell Certbot to use a https://acme-v02.api.letsencrypt.org/. You can tell Certbot to use a
different CA by providing ``--server`` on the command line or in a different CA by providing ``--server`` on the command line or in a
:ref:`configuration file <config-file>` with the URL of the server's :ref:`configuration file <config-file>` with the URL of the server's
ACME directory. For example, if you would like to use Let's Encrypt's ACME directory. For example, if you would like to use Let's Encrypt's
new ACMEv2 server, you would add ``--server staging server, you would add ``--server
https://acme-v02.api.letsencrypt.org/directory`` to the command line. https://acme-staging-v02.api.letsencrypt.org/directory`` to the command line.
Certbot will automatically select which version of the ACME protocol to
use based on the contents served at the provided URL.
If you use ``--server`` to specify an ACME CA that implements a newer If you use ``--server`` to specify an ACME CA that implements the standardized
version of the spec, you may be able to obtain a certificate for a version of the spec, you may be able to obtain a certificate for a
wildcard domain. Some CAs (such as Let's Encrypt) require that domain wildcard domain. Some CAs (such as Let's Encrypt) require that domain
validation for wildcard domains must be done through modifications to validation for wildcard domains must be done through modifications to