1. Install certbot
apt-get install certbot
2. Obtain certificate only
certbot -d <domainname> --manual --preferred-challenges dns certonly
data:image/s3,"s3://crabby-images/63458/6345883ff16d7103a3a63fc67a61e943290c45aa" alt=""
3. Besure to add _acme-challenge and it’s value on DNS management
data:image/s3,"s3://crabby-images/c2bb9/c2bb9e8f7c8e2942a3ed18c3c76c95fac8684283" alt=""
4. The certificate and key files will be saved at following location. Please move it to appropriate location if changes have been made.
Certificate is saved at: /etc/letsencrypt/live/<domain name>/fullchain.pem
Key is saved at: /etc/letsencrypt/live/<domain name>/privkey.pem
*Certificate can be renamed to *.crt, Key can be renamed to *.key.