Skip to main content

Requisitos del sistema y de la red

Compruebe que su sistema y red cumplan con los requisitos mínimos antes de instalar el agente de automatización ACME de DigiCert.

El agente debe instalarse en el mismo sistema que los certificados TLS/SSL automatizados.

Requisitos del sistema

El software de agente ACME se ejecuta en los sistemas Linux y Windows, con los siguientes requisitos:

Server type

Supported OS versions

Minimum specifications

Windows

  • Windows 10

  • Windows Server 2016

  • Windows Server 2019

  • Windows Server 2022

  • Versión de 64 bits

  • 2 GB de RAM (4 GB de RAM recomendada)

  • 2 GB de espacio libre en disco (mínimo)

  • Microsoft .NET Framework 4.x installed

  • Administrator privileges

Linux

  • Red Hat Enterprise Linux 7.x

  • Red Hat Enterprise Linux 8.x

  • Red Hat Enterprise Linux 9.x

  • Ubuntu 20.04 or later

  • Versión de 64 bits y configuración regional de EE. UU. obligatorias

  • 2 GB de RAM (4 GB de RAM recomendada)

  • 2 GB de espacio libre en disco (mínimo)

  • CLI utilities awk, grep, sed, lsof, and dos2unix installed

  • Root privileges

Requisitos de red

  • The DigiCert agent on each host must be able to resolve the fully qualified domain names (FQDNs) for the local web server, either via DNS or a local "hosts" file.

  • Realizar una conexión saliente con HTTPS (puerto 443).

    Region

    Platform URLs1

    TCP port

    Protocol

    Americas (U.S.A.)

    one.digicert.com, clientauth.one.digicert.com

    443

    HTTPS

    APJ (Japan)

    one.digicert.co.jp, clientauth.one.digicert.co.jp

    443

    HTTPS

    EMEA (Netherlands)

    one.nl.digicert.com, clientauth.one.nl.digicert.com

    443

    HTTPS

    EMEA (Switzerland)

    one.ch.digicert.com, clientauth.one.ch.digicert.com

    443

    HTTPS

    1. For users with an on-premises DigiCert ONE deployment, the agent needs to access port 443 (HTTPS) on the local DigiCert ONE instance and ClientAuth host (for example, my-org.one.digicert.com and my-org.clientauth.digicert.com).

  • In addition, the agent requires outbound access to the below host for Trust Lifecycle Manager discovery and automation services:

    Region

    URL

    TCP port

    Protocol

    All regions

    automation-service.digicert.com 1

    443

    HTTPS

    1. This service is delivered through a content distribution network (CDN) and the IP addresses may vary by region. If your organization uses IP-based allowlists, look up the automation-service.digicert.com host in your local region to determine which IP addresses to allow.

Aviso

If using a local DigiCert​​®​​ sensor as proxy, the agent must also be able to connect outbound to the proxy listening port on the sensor. To learn more, see Use a sensor as a proxy server.

What's next