The Automated Certificate Management Environment (ACME) feature in SonicOS automates the provisioning, renewal, and revocation of TLS certificates from public certificate authorities such as Let’s Encrypt. This reduces administrative overhead and helps prevent service disruptions caused by expired certificates.
This feature is supported in SonicOS 8.2.2 and higher versions.
ACME enables SonicOS to:
This approach ensures secure, uninterrupted service with minimal administrative effort.
Prerequisites
Before using the ACME feature to obtain a certificate from Let's Encrypt, ensure the following conditions are met:
To configure ACME
The Create certificates dialog box is displayed.
Select the Automatically Provision Certificate (ACME) option and click Next.
On the ACME Configuration page, enter the following information.
From the CSR List drop-down menu, select the Certificate Signing Request.
To create a new certificate signing request, select Create new CSR. For more information, refer to Generating a Certificate Signing Request.
If the CSR does not include a valid common name, a warning is displayed and the Confirm button remains disabled.
The certificate is listed as an ACME certificate.