OpenBSD // letsencrypt [ certbot ] renewal for web servers listening on different ports than 80
pf.conf: # LETSENCRYPT CERTBOT TABLE table persist # CERTBOT SHUFFLE matqch in on { $ext_if $carp_ext_if } proto { tcp udp } from to { $ext_if:0 $carp_ext_if:0 } port { 80 } rdr-to $carp_ext_if:0 port 8000 tag PASS crontab: