What is the preferred way to mass fix SSL sertificates after latest version?

Mika Sarmantti

Verified User
Joined
Jul 7, 2025
Messages
10
We have dozens of clients, using 1 or more domains per client, spread over several DA servers, now that the ACME setting has entered the game, it seem we need to manually go through each client's each domain, into /evo/ssl/acme settings and enable ACME, and disable "prefer wildcards" to enable SSL certificate provisioning. doing this manually for all servers, all clients and all of their domains will take hours, if not days.

What is the correct way to fix these ACME settings and restore SSL sertificates in working order? I did try looking into it, but guess finding useful information is so 2025, and only thing the modern search engines can do is AI slop that may or may not be more helpful than damaging.
 
@Mika Sarmantti, the latest DA release 1.708 has a maintenance task to switch to the new ACME system on all users.

Tool for enabling new TLS system for all users

Using maintenance task is preferred because it will exclude manually managed certificates.

There is not automated way to disable the "prefer wildcards" option for everyone. However latest release should automatically switch to HTTP challenge when DNS challenge is know to not work. Even if this checkbox is enabled. If DA does not automatically switch to HTTP challenge please open a support ticket and we will check why DA thinks DNS challenge should work for you.
 
Back
Top