> For the complete documentation index, see [llms.txt](https://docs.hivel.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.hivel.ai/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws.md).

# DNS Setup (AWS)

Secure your Hivel Web UI with HTTPS using Caddy—a lightweight reverse proxy that's easier to set up than an AWS ALB. Choose your path below depending on your domain availability.

| Page                                                                                                                                                                                                                      | Description                                                                                                            |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------- |
| [**Setup and Prerequisites**](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/setup-and-prerequisites.md)                                                                                          | Why HTTPS/Caddy is needed, prerequisites, and the choice between a domain-based or temporary self-signed setup.        |
| ↳ [Recommended: Option A -  Domain + Let's Encrypt](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/setup-and-prerequisites/recommended-option-a-domain-+-lets-encrypt.md)                         | Point DNS at VM, open ports 80/443, and run Caddy to auto-issue a trusted Let's Encrypt certificate.                   |
| ↳ [Advanced / temporary - Option B: No Domain Yet (Self-Signed)](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/setup-and-prerequisites/advanced-temporary-option-b-no-domain-yet-self-signed.md) | Temporary self-signed HTTPS via Caddy for testing before a domain is available - not for production.                   |
| ↳ [Upgrading from Option B to Option A](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/setup-and-prerequisites/upgrading-from-option-b-to-option-a.md)                                            |                                                                                                                        |
| [**Managing the Caddy Container**](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/managing-the-caddy-container.md)                                                                                | Commands to view logs, restart, stop, or remove the Caddy container; how certificates persist across restarts.         |
| [**Troubleshooting**](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/troubleshooting.md)                                                                                                          | Symptom → cause → diagnosis → resolution for certificate issues, connection refused on 443, and blank-page/502 errors. |
| [**Quick Reference**](/self-managed-hivel-deployment/virtual-private-cloud/aws/dns-setup-aws/quick-reference.md)                                                                                                          | At-a-glance table of ports, certificate source, config file, and data volume for the Caddy setup.                      |

{% columns %}
{% column %} <a href="/self-managed-hivel-deployment/virtual-private-cloud/aws/hivel-on-premises-deployment-guide-aws/support-and-summary.md" class="button primary" data-icon="backward">Back to Support & Summary</a>
{% endcolumn %}

{% column %}

{% endcolumn %}

{% column %} <a href="/self-managed-hivel-deployment/virtual-private-cloud/azure.md" class="button primary" data-icon="forward">Azure</a>
{% endcolumn %}
{% endcolumns %}
