Post AV8BqgsVv9ORevWmnI by augustine@magincia.cafe
 (DIR) More posts by augustine@magincia.cafe
 (DIR) Post #AV8BqgESK5LnegmnM8 by oberstal@infosec.exchange
       2023-04-29T02:48:26Z
       
       0 likes, 0 repeats
       
       Does anyone have thoughts on using Smallstep CA for home network certificate management?I currently have a cobbled together solution wrapping the cfssl CLI, but am over the manualness of it and would prefer to have an ACME protocol implementation so I can just auto-renew and forget about it.https://github.com/smallstep/certificates
       
 (DIR) Post #AV8BqgsVv9ORevWmnI by augustine@magincia.cafe
       2023-04-29T03:07:50Z
       
       1 likes, 0 repeats
       
       @oberstal I switched to smallstep for ACME support after managing everything manually with XCA for a very long time. I haven’t thought about it since I set it up so I guess that’s a testament to how well it works. I only wish there was a web console for it. I keep meaning to go back and write myself some cheat sheets for the CLI before I forget how I put it all together.Since I already had my Root CA I had been managing with XCA I simply signed an intermediate for smallstep for my servers using ACME.