The end of self-signed certificates

I decided to deploy a Let's Encrypt certificate on my Unifi Dream Router. Since I own a domain and Active24 is one of the providers that supports API access for domain management, I wanted to take advantage of it. What I needed was DNS validation — DNS-01. After a bit of digging I used the following project. You won't find Active24 listed there, but the official Active24 client supports it. All you need are the variables _ACTIVE24_APIKEY and _ACTIVE24SECRET. The DNS provider is set to active24.

The primary motivation was the UDR block page that pops up when a user browses where they shouldn't. For the same reason I have a Let's Encrypt certificate on AdGuard Home. But more on that next time.

Other Related Posts:

DNS Security

DNS over HTTPs

Animation of the AdGuard Home dashboard: general statistics, top clients, top queried domains and top blocked domains
Since I'd already gone to the trouble of generating a certificate for the UDR, I made one for AdGuard Home too. For DoH to work you need a wildcard certificate. Active24 supports DNS-01 via its API, so issuing it is no problem.
The advantage of DoH is that HTTPS is already open (t...

8th Feb 2026

WiFi 6

IEEE 802.11 ax

When sorting out connectivity in the flat I didn't want VDSL — 30 Mbit through a modem is embarrassing. Wireless internet didn't work out in the end so I landed on a 5G modem. The box that O2 had custom-made doesn't offer much. More like nothing than a lot. Need multiple Wi-Fi net...

20th Nov 2022