# Certificate resolver storage convenience

**URL:** <https://community.traefik.io/t/certificate-resolver-storage-convenience/12124>\
**Category:** Traefik v2\
**Tags:** letsencrypt-acme\
**Created:** [October 16, 2021, 9:22am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124 "2021-10-16T09:22:23Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![evdel](https://avatars.discourse-cdn.com/v4/letter/e/85f322/32.png) [@evdel](https://community.traefik.io/u/evdel)\
**Post date:** [October 16, 2021, 9:22am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/1 "2021-10-16T09:22:23Z")

</div>

When using a certificate resolver with let's encrypt, Traefik expects to have file (by default acme.json) configured with specific ownership and permissions.

In order for me to have it working I create an acme.json file like this :

```auto
touch acme.json
chown 65532 acme.json
chmod 600 acme.json

```

And then mount it from a volume into Traefik's container.

It works but in some cases I think it would be convenient if this file is already present and properly set in the docker image so that I do not have to use a volume.

What do you guys think ?

---

<div class="post-metadata">

**Author:** ![wollomatic](https://sea2.discourse-cdn.com/flex020/user_avatar/community.traefik.io/wollomatic/32/4344_2.png) [@wollomatic](https://community.traefik.io/u/wollomatic)\
**Post date:** [October 16, 2021, 9:28am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/2 "2021-10-16T09:28:15Z")

</div>

Storing data inside the container isn't a good practice and you should be aware that all data is lost by removing and recreating the container.

But if your use case requires doing that you can realize it by creating your own Dockerfile.

Regards,  
Wolfgang

---

<div class="post-metadata">

**Author:** ![evdel](https://avatars.discourse-cdn.com/v4/letter/e/85f322/32.png) [@evdel](https://community.traefik.io/u/evdel)\
**Post date:** [October 16, 2021, 9:47am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/3 "2021-10-16T09:47:37Z")

</div>

I know data is not persistent in containers.

I give you an example use case. I currently work in the context of a private cloud. I want to check Traefik is able to perform the acme challenge from there. So I use the acme staging server. I do not need to keep these certificates and it would be convenient for me if I do not have to care about a volume.

I know I can build a custom image. I was asking the question more in the perspective of a feature proposal if others are interested.

---

<div class="post-metadata">

**Author:** ![cakiwi](https://sea2.discourse-cdn.com/flex020/user_avatar/community.traefik.io/cakiwi/32/3205_2.png) [@cakiwi](https://community.traefik.io/u/cakiwi)\
**Post date:** [October 17, 2021, 5:33pm UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/4 "2021-10-17T17:33:04Z")

</div>

> [@evdel](#):
>
> What do you guys think ?

Use a volume. Its by far the easiest.

---

<div class="post-metadata">

**Author:** ![evdel](https://avatars.discourse-cdn.com/v4/letter/e/85f322/32.png) [@evdel](https://community.traefik.io/u/evdel)\
**Post date:** [October 19, 2021, 9:04am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/5 "2021-10-19T09:04:54Z")

</div>

I close this poll. Thank you both for your participation.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex020/uploads/containo/original/2X/b/bd81ebdb578656e76e56ff3cc3eed021d3ba132d.png) [@system](https://community.traefik.io/u/system)\
**Post date:** [October 22, 2021, 9:04am UTC](https://community.traefik.io/t/certificate-resolver-storage-convenience/12124/6 "2021-10-22T09:04:56Z")

</div>

This topic was automatically closed 3 days after the last reply. New replies are no longer allowed.
