
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
certbot-dns-dynu
Advanced tools
Dynu DNS Authenticator plugin for Certbot.
This plugin is built from the ground up and follows the development style and life-cycle
of other certbot-dns-*
plugins found in the
Official Certbot Repository.
Install
pip install --upgrade certbot
pip install certbot-dns-dynu
Verify
$ certbot plugins --text
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
* dns-dynu
Description: Obtain certificates using a DNS TXT record (if you are using Dynu
for DNS.)
Interfaces: Authenticator, Plugin
Entry point: dns-dynu = certbot_dns_dynu.dns_dynu:Authenticator
...
...
The credentials file e.g. ~/dynu-credentials.ini
should look like this:
dns_dynu_auth_token = AbCbASsd!@34
Command line args for certbot
certbot ... \
--authenticator dns-dynu \
--dns-dynu-credentials ~/dynu-credentials.ini \
...
Example
certbot certonly \
--authenticator dns-dynu --dns-dynu-credentials ./test/dynu-credentials.ini
Why such long name for a plugin?
This follows the upstream nomenclature: certbot-dns-<dns-provider>
.
Why do I have to use :
separator in the name? And why are the configuration file parameters so weird?
This is a limitation of the certbot interface towards third-party plugins.
For details read the discussions:
Create a virtual env, install the plugin (editable
mode),
spawn the environment and run the test:
python3 -m venv .venv
. .venv/bin/activate
python -m pip install --upgrade pip
pip install -e .
./test/run_certonly.sh <action> "<domain> " "<email>"
ms-vscode-remote.remote-containers
plugin in vscodeCtrl + Shift + p
or Cmd + Shift + p
Reopen in Container
Copyright (c) 2021 Bikramjeet Singh
FAQs
Dynu DNS Authenticator plugin for Certbot
We found that certbot-dns-dynu demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.