Skip to main content

Plex and LetsEncrypt

Work in Progress:

Plex and LetsEncrypt

So... I'm not entirely sure where to begin with all this. And this write-up is a mess (right now). I was not certain this was going to work and therefore I was not keeping absolute notes.
Apache webserver allowing 80/443 through my firewall.
- www.linuxrevolution.com
- plex.linuxrevolution.com
Plex Media Server currently running on OSX Mac Mini at port 32400 (standard port)
I own a domain "linuxrevolution.com" and I also have a Plex Media Server running on any particular system (Mac Mini/OSX, Nvidia Shield TV, Linux).
On my webserver, I am using CertBot
- create a webroot (vhost) on your Apache Server.

wget https://dl.eff.org/certbot-auto
chmod a+x certbot-auto
./certbot-auto 


./certbot-auto certonly -d plex.linuxrevolution.com --webroot

openssl pkcs12 -export -out ~/plex_linuxrevolution_com.pfx \
  -inkey /etc/letsencrypt/archive/plex.linuxrevolution.com/privkey1.pem \
  -in /etc/letsencrypt/archive/plex.linuxrevolution.com/cert1.pem \
  -certfile /etc/letsencrypt/archive/plex.linuxrevolution.com/chain1.pem

- Enter a passphrase

Getting the certs downloaded locally.
You then have to create the pkcs12 file and you will be asked for a passphrase which you will need to enter in your Plex configuration.
Custom certificate location /Users/jradtke/Music/plex_linuxrevolution_com.pfx
Custom certificate encryption key <this is the key you used when you created the pkcs12 file>
Custom certificate domain plex.linuxrevolution.com

Review Logs
cp /Users/jradtke/Library/Logs/Plex Media Server
grep CERT Plex\ Media\ Server.log 

I'd like to thank:

Comments

  1. I recently wrote a script to automate the install and update of letsencrypt certificates on a plex server that is running on Ubuntu.

    https://oisec.net/blog/plex-letsencrypt

    ReplyDelete

Post a Comment

Popular posts from this blog

RHN Satellite Server (spacewalk) repomd.xml not found

"repomd.xml not found" If you add a channel, or if your RHN cache gets corrupted, and one of your guests complains that it cannot find repomd.xml for jb-ews-2-x86_64-server-5-rpm (for example) - you need to rebuild your repodata cache. Normally this is an automated job - which is exemplified by the fact that you have obviously built out your entire Satellite environment and never had to do any of the steps you are about to do. So - some prep work: Open 3 terminals to your Satellite Server and run: # Term 1 cd /var/cache/rhn watch "ls -l | wc -l" # Term 2 pwd cd /var/log/rhn tail -f rhn_taskomatic_daemon.log # Term 3 satellite-sync --channel=jb-ews-2-x86_64-server-5-rpm Once the satellite-sync has completed, you >should< see the count increment by one.  If you are unlucky (like me) you will not. You then need to login to the Satellite WebUI as the satellite admin user. Click on the Admin tab (at the top) Task Schedules (on the left) fin

MOTD with colors! (also applies to shell profiles)

I'm not sure why I had never looked into this before, but this evening I became obsessed with discovering how to present different colored text in the /etc/motd. A person had suggested creating a shell script (rather than using special editing modes in vi, or something) and I agree that is the simplest way of getting this accomplished quickly. This most noteworthy portion of this script is the following: RESET="\033[0m" that puts the users shell back to the original color. I typically like a green text on black background. Also - a great reference for the different colors and font-type (underscore, etc...) https://wiki.archlinux.org/index.php/Color_Bash_Prompt I found this example on the web and I wish I could recall where so that I could provide credit to that person. #!/bin/bash #define the filename to use as output motd="/etc/motd" # Collect useful information about your system # $USER is automatically defined HOSTNAME=`uname -n` KERNEL=`un

Install RHEL 7 on old HP DL380 g5

Someone at work had been running RHEL on an HP DL380 G5 and blew it up.  After several attempts at doing an installation that made me conclude the hardware was actually bad... I kept digging for the answer. Attempt install and Anaconda could not find any disks - try a Drivers Disk (dd.img) both cciss and hpsa.   -- once we did that, when the system would reboot it would say it could not find a disk. hmmm. Boot from your installation media and interrupt the startup at grub. Add hpsa.hpsa_allow_any=1 hpsa.hpsa_simple_mode=1 to the line starting with linuxefi press CTRL-X to boot. Once the system restarts after the install, you need to once again interrupt the startup and add the line from above. After the system starts, edit /etc/default/grub and add those 2 parameters to the end of the line starting with GRUB_CMDLINE_LINUX (which likely has quiet at the end of the line currently). then run # cp /boot/grub2/grub.cfg /boot/grub2/grub.cfg.orig # grub2-mkconfig -o /boot/grub2