Post AV8BqgsVv9ORevWmnI by augustine@magincia.cafe
(DIR) More posts by augustine@magincia.cafe
(DIR) Post #AV8BqgESK5LnegmnM8 by oberstal@infosec.exchange
2023-04-29T02:48:26Z
0 likes, 0 repeats
Does anyone have thoughts on using Smallstep CA for home network certificate management?I currently have a cobbled together solution wrapping the cfssl CLI, but am over the manualness of it and would prefer to have an ACME protocol implementation so I can just auto-renew and forget about it.https://github.com/smallstep/certificates
(DIR) Post #AV8BqgsVv9ORevWmnI by augustine@magincia.cafe
2023-04-29T03:07:50Z
1 likes, 0 repeats
@oberstal I switched to smallstep for ACME support after managing everything manually with XCA for a very long time. I haven’t thought about it since I set it up so I guess that’s a testament to how well it works. I only wish there was a web console for it. I keep meaning to go back and write myself some cheat sheets for the CLI before I forget how I put it all together.Since I already had my Root CA I had been managing with XCA I simply signed an intermediate for smallstep for my servers using ACME.