2025-03-25, 03:43 PM
Indeed. Let's Encrypt's cert bot, which you'd need when using Nginx and Apache, requires port 80. Unless you are using DNS challenge.
AFAIK, Caddy is the only HTTP server that supports TLS-ALPN challenges. Let's Encrypt even calls out Nginx and Apache for not supporting it yet. Even though it has been around for a while.
https://letsencrypt.org/docs/challenge-t...ls-alpn-01
Almost 7 years since the initial proposal and 5 years since it was ratified.
https://datatracker.ietf.org/doc/html/dr...ls-alpn-01
https://datatracker.ietf.org/doc/rfc8737/
AFAIK, Caddy is the only HTTP server that supports TLS-ALPN challenges. Let's Encrypt even calls out Nginx and Apache for not supporting it yet. Even though it has been around for a while.
https://letsencrypt.org/docs/challenge-t...ls-alpn-01
Almost 7 years since the initial proposal and 5 years since it was ratified.
https://datatracker.ietf.org/doc/html/dr...ls-alpn-01
https://datatracker.ietf.org/doc/rfc8737/