Add note on automatic-https page

This commit is contained in:
Matthew Holt 2022-03-09 12:49:11 -07:00
parent d1feedefab
commit 377368b631
No known key found for this signature in database
GPG key ID: 2A349DD577D586A5

View file

@ -79,6 +79,10 @@ Any of the following will prevent automatic HTTPS from being activated, either i
- Listening exclusively on the HTTP port
- Manually loading certificates (unless [this config property](/docs/json/apps/http/servers/automatic_https/ignore_loaded_certificates/) is true)
**Special cases:**
- Domains ending in `.ts.net` will not be managed by Caddy. Instead, Caddy will automatically attempt to get these certificates at handshake-time from the locally-running [Tailscale](https://tailscale.com) instance. This requires that [HTTPS is enabled in your Tailscale account](https://tailscale.com/kb/1153/enabling-https/) and the Caddy process must either be running as root, or you must configure `tailscaled` to give your Caddy user [permission to fetch certificates](https://github.com/caddyserver/caddy/pull/4541#issuecomment-1021568348).
## Effects