Automic VaultAutomic Vault

brew

dnsrobocert を Homebrew でインストール

dnsrobocert のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install dnsrobocert

local Homebrew formula metadata

概要

パッケージ概要

Manage Let's Encrypt SSL certificates based on DNS challenges

コマンドとエイリアス

  • dnsrobocert

履歴

プロジェクトの歴史と使われ方

DNSroboCert is a certificate automation tool for Let's Encrypt DNS-01 challenges. Its niche is coordinating ACME issuance, DNS provider credentials, renewal, and post-renewal hooks in one YAML-driven service.

プロジェクトの歴史

The GitHub repository was created in June 2017, and the first GitHub release, 1.0.0, followed later that month. The official documentation describes the design as orchestration of Certbot for certificate issuance and Lexicon for standardized DNS provider updates.

The project grew around the operational gap left by HTTP/TLS challenge tools: private services, non-web services, wildcard certificates, and deployments where opening an inbound web challenge is not practical. Its documentation emphasizes Docker support, dynamic reload of configuration, regular renewal, hooks, and DNS alias mode.

採用の歴史

DNSroboCert is packaged for Homebrew, but its official user guide presents pipx and Docker as the main installation paths. That fits its audience: self-hosters and operators who want long-running certificate automation rather than a one-shot ACME client invocation.

使われ方

Users maintain a central YAML file, typically /etc/dnsrobocert/config.yml, with acme, profiles, and certificates sections. Profiles hold DNS provider credentials for Lexicon, certificates reference those profiles, and the service validates the file before issuing or renewing certificates.

パッケージ好きにとっての重要性

DNSroboCert is interesting to package maintainers because it wraps several moving parts that usually leak into local scripts: Certbot, Lexicon provider plugins, provider credentials, renewal cadence, Docker volumes, and certificate propagation hooks. Its package surface is small, but its runtime configuration is security-sensitive.

タイムライン

  • 2017: GitHub repository created.
  • 2017: First GitHub release, 1.0.0, published.
  • 2020: Documentation examples use the 3.0.0 installation flow and container paths.
  • 2026: v3.27.0 release published and Read the Docs displays DNSroboCert 3.27.0 documentation.

Related projects

  • Certbot is the underlying ACME client named by the docs. Lexicon provides the DNS provider API layer. The docs compare DNSroboCert's use case with reverse-proxy automation such as Traefik and nginx-proxy companion, and mention acme.sh DNS alias mode as related DNS challenge practice.

セキュリティ状態

保護ツール対応はまだ見つかっていません

dnsrobocert に一致するローカルシークレット処理マニフェストは見つかりませんでした。将来の対応で安定したパッケージ URL を使えるよう、Nucleus パッケージメタデータはここに公開されています。

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • 5 件の実行時依存関係とともにインストールされます。
  • ビルドメタデータには 1 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
/etc/dnsrobocert/config.yml

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
/etc/dnsrobocert/config.yml

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
dnsrobocertcliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版3.27.0
マネージャ更新日2026-06-20
ローカルデータOK
上流not checked
検出された最新未検出

https://dnsrobocert.readthedocs.io/en/latest/

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:dnsrobocert
バージョン3.27.0
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/dnsrobocert
ホームページhttps://dnsrobocert.readthedocs.io/en/latest/
リポジトリhttps://github.com/adferrand/dnsrobocert
上流ドキュメントhttps://adferrand.github.io/dnsrobocert
ライセンスMIT
ソースアーカイブhttps://files.pythonhosted.org/packages/6c/3f/c39c829f235a4a3694791ebf9b39d34fe49835bfcdb94162601b054e85fe/dnsrobocert-3.27.0.tar.gz
最終更新2026-06-20T10:48:00Z
Pulseupdated
依存関係certifi, cryptography, libyaml, python@3.14, rpds-py
ビルド依存関係rust
macOS 提供ライブラリlibxml2, libxslt
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namednsrobocert
Version Scheme0
Revision3
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • package relationship graph
  • package version freshness
  • package-page enrichment