Hacker News new | ask | show | jobs
by ygjb-dupe 3522 days ago
Have a separate host that handles all of the renewals (e.g. dns01 challenge), then pushes the updated cert to your webserver and reloads the nginx (or whatever process is required for your webserver/proxy).