34
loading...
This website collects cookies to deliver better user experience
dig
or nslookup
to ensure that it’s correctly pointed. Also, try hitting the grafana using that domain on port 3000 (i.e. http://{domain}:3000/
).80,443
, and click Save.sudo groupadd sslcerts
sudo mkdir /etc/letsencrypt
sudo mkdir /etc/letsencrypt/archive
sudo mkdir /etc/letsencrypt/live
sudo chown -R root:sslcerts /etc/letsencrypt/
sudo chmod 755 /etc/letsencrypt/archive
sudo chmod 755 /etc/letsencrypt/live
sudo usermod -G sslcerts -a grafana
sudo apt install -y certbot
sudo certbot certonly --standalone
azureuser@grafana-azure:~$ sudo ls -hal /etc/letsencrypt/live
total 16K
drwx------ 3 root root 4.0K Mar 13 21:08 .
drwxr-xr-x 9 root sslcerts 4.0K Mar 13 21:08 ..
-rw-r--r-- 1 root root 740 Mar 13 21:08 README
drwxr-xr-x 2 root root 4.0K Mar 13 21:08 grafanablog.martinjt.me
sudo nano /etc/grafana/grafana.ini
protocol = https
domain = <your-domain>
enforce_domain = true
root_url = https://<your-domain>
cert_file = /etc/letsencrypt/live/<your-domain>/fullchain.pem
cert_key = /etc/letsencrypt/live/<your-domain>/privkey.pem
sudo systemctl restart grafana-server.service
https://<your-domain>:3000/
sudo setcap 'cap_net_bind_service=+ep' /usr/sbin/grafana-server
grafana.ini
again:http_port = 443
sudo systemctl restart grafana-server.service
https://<your-domain>