docker run -it --rm \
-v /data/certbot:/etc/letsencrypt \
registry.cn-hangzhou.aliyuncs.com/shiningrise/certbot-aliyun certonly \
--dns-aliyun-credentials /etc/letsencrypt/credentials.ini \
--rsa-key-size 2048 --force-renewal \
--key-type rsa \
-d npsy.wxy.work
openssl pkcs8 -in privkey.pem -topk8 -nocrypt -outform PEM -out rsa_private_key.pem -traditional