mirror of
https://github.com/acmesh-official/acme.sh.git
synced 2025-12-16 15:14:01 +08:00
* Fix for empty error objects in response breaking extraction of domain validation types
Fix for empty error objects in the response which mess up the extraction of domain validation types due to the closing brace in the error object prematurely matching the end of the search pattern.
This seems to be a recent change with ZeroSSL in particular where "error":{} is being included in responses.
There could potentially be a related issue if there is a complex error object ever returned in the validation check response where an embedded sub-object could lead to an incomplete extraction of the error message, roughly around line 5040.
Adapted from fix suggested here: https://github.com/acmesh-official/acme.sh/issues/4933#issuecomment-1870499018
* Add new dnsapi support for OpenProvider.eu using new REST API
* Cleanup duplicate debug log output based on DNS test run
* Resolve spellcheck error
* Configure 10 second timeout to ACME_DIRECTORY API call
* add support for AIX style netstat
* add
* fix for wiki
* minor
* minor
* wiki
* wiki
* dnsapi: dns_mydnsjp.sh fix author
The @epgdatacapbon was renamed to @tkmsst
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* dnsapi: dns_ddnss.sh remove RaidenII from authors
He made the DuckDNS script that was used for this script but he can't support the script.
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* dnsapi: fix authors: use @ for GitHub profiles
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* dnsapi: dns_vultr.sh remove empty author
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* dnsapi: dns_mijnhost.sh rearrange fields, use user docs instead of API docs
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* dnsapi: fix Structured DNS Info
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
* Fix logged typo when running pre hook
* Run post hook when _on_before_issue errors
---------
Signed-off-by: Sergey Ponomarev <stokito@gmail.com>
Co-authored-by: Ciaran Walsh <ciaran@ciaran-walsh.com>
Co-authored-by: Lambiek12 <algemeen@lambiek12.nl>
Co-authored-by: Erwin Oegema <blablaechthema@hotmail.com>
Co-authored-by: laDanz <cdanzmann@gmail.com>
Co-authored-by: neil <github@neilpang.com>
Co-authored-by: neil <gitpc@neilpang.com>
Co-authored-by: Sergey Ponomarev <stokito@gmail.com>
Co-authored-by: David Beitey <david@davidjb.com>
Co-authored-by: Jan-willem van Kampen <Lambiek12@users.noreply.github.com>
131 lines
3.8 KiB
Bash
Executable File
131 lines
3.8 KiB
Bash
Executable File
#!/usr/bin/env sh
|
|
# shellcheck disable=SC2034
|
|
dns_duckdns_info='DuckDNS.org
|
|
Site: www.DuckDNS.org
|
|
Docs: github.com/acmesh-official/acme.sh/wiki/dnsapi#dns_duckdns
|
|
Options:
|
|
DuckDNS_Token API Token
|
|
Author: @RaidenII
|
|
'
|
|
|
|
DuckDNS_API="https://www.duckdns.org/update"
|
|
|
|
######## Public functions ######################
|
|
|
|
#Usage: dns_duckdns_add _acme-challenge.domain.duckdns.org "XKrxpRBosdIKFzxW_CT3KLZNf6q0HG9i01zxXp5CPBs"
|
|
dns_duckdns_add() {
|
|
fulldomain=$1
|
|
txtvalue=$2
|
|
|
|
DuckDNS_Token="${DuckDNS_Token:-$(_readaccountconf_mutable DuckDNS_Token)}"
|
|
if [ -z "$DuckDNS_Token" ]; then
|
|
_err "You must export variable: DuckDNS_Token"
|
|
_err "The token for your DuckDNS account is necessary."
|
|
_err "You can look it up in your DuckDNS account."
|
|
return 1
|
|
fi
|
|
|
|
# Now save the credentials.
|
|
_saveaccountconf_mutable DuckDNS_Token "$DuckDNS_Token"
|
|
|
|
# Unfortunately, DuckDNS does not seems to support lookup domain through API
|
|
# So I assume your credentials (which are your domain and token) are correct
|
|
# If something goes wrong, we will get a KO response from DuckDNS
|
|
|
|
if ! _duckdns_get_domain; then
|
|
return 1
|
|
fi
|
|
|
|
# Now add the TXT record to DuckDNS
|
|
_info "Trying to add TXT record"
|
|
if _duckdns_rest GET "domains=$_duckdns_domain&token=$DuckDNS_Token&txt=$txtvalue"; then
|
|
if [ "$response" = "OK" ]; then
|
|
_info "TXT record has been successfully added to your DuckDNS domain."
|
|
_info "Note that all subdomains under this domain uses the same TXT record."
|
|
return 0
|
|
else
|
|
_err "Errors happened during adding the TXT record, response=$response"
|
|
return 1
|
|
fi
|
|
else
|
|
_err "Errors happened during adding the TXT record."
|
|
return 1
|
|
fi
|
|
}
|
|
|
|
#Usage: fulldomain txtvalue
|
|
#Remove the txt record after validation.
|
|
dns_duckdns_rm() {
|
|
fulldomain=$1
|
|
txtvalue=$2
|
|
|
|
DuckDNS_Token="${DuckDNS_Token:-$(_readaccountconf_mutable DuckDNS_Token)}"
|
|
if [ -z "$DuckDNS_Token" ]; then
|
|
_err "You must export variable: DuckDNS_Token"
|
|
_err "The token for your DuckDNS account is necessary."
|
|
_err "You can look it up in your DuckDNS account."
|
|
return 1
|
|
fi
|
|
|
|
if ! _duckdns_get_domain; then
|
|
return 1
|
|
fi
|
|
|
|
# Now remove the TXT record from DuckDNS
|
|
_info "Trying to remove TXT record"
|
|
if _duckdns_rest GET "domains=$_duckdns_domain&token=$DuckDNS_Token&txt=&clear=true"; then
|
|
if [ "$response" = "OK" ]; then
|
|
_info "TXT record has been successfully removed from your DuckDNS domain."
|
|
return 0
|
|
else
|
|
_err "Errors happened during removing the TXT record, response=$response"
|
|
return 1
|
|
fi
|
|
else
|
|
_err "Errors happened during removing the TXT record."
|
|
return 1
|
|
fi
|
|
}
|
|
|
|
#################### Private functions below ##################################
|
|
|
|
# fulldomain may be 'domain.duckdns.org' (if using --domain-alias) or '_acme-challenge.domain.duckdns.org'
|
|
# either way, return 'domain'. (duckdns does not allow further subdomains and restricts domains to [a-z0-9-].)
|
|
_duckdns_get_domain() {
|
|
|
|
# We'll extract the domain/username from full domain
|
|
_duckdns_domain="$(printf "%s" "$fulldomain" | _lower_case | _egrep_o '^(_acme-challenge\.)?([a-z0-9-]+\.)+duckdns\.org' | sed -n 's/^\([^.]\{1,\}\.\)*\([a-z0-9-]\{1,\}\)\.duckdns\.org$/\2/p;')"
|
|
|
|
if [ -z "$_duckdns_domain" ]; then
|
|
_err "Error extracting the domain."
|
|
return 1
|
|
fi
|
|
|
|
return 0
|
|
}
|
|
|
|
#Usage: method URI
|
|
_duckdns_rest() {
|
|
method=$1
|
|
param="$2"
|
|
_debug param "$param"
|
|
url="$DuckDNS_API?$param"
|
|
if [ -n "$DEBUG" ] && [ "$DEBUG" -gt 0 ]; then
|
|
url="$url&verbose=true"
|
|
fi
|
|
_debug url "$url"
|
|
|
|
# DuckDNS uses GET to update domain info
|
|
if [ "$method" = "GET" ]; then
|
|
response="$(_get "$url")"
|
|
_debug2 response "$response"
|
|
if [ -n "$DEBUG" ] && [ "$DEBUG" -gt 0 ] && _contains "$response" "UPDATED" && _contains "$response" "OK"; then
|
|
response="OK"
|
|
fi
|
|
else
|
|
_err "Unsupported method"
|
|
return 1
|
|
fi
|
|
return 0
|
|
}
|