-
Notifications
You must be signed in to change notification settings - Fork 2
Open
Labels
enhancementNew feature or requestNew feature or request
Description
Description
Generate Self-Signed TLS certificates + Root Certificate Authority for Komponist. The Root CA + Certificates / Keys will be used by traefik
reverse-proxy for TLS-Termination for the running services. The Root CA will be saved under /usr/local/share/ca-certificates/
to make it acceptable for the Control Node (as well as for browsers).
References
- Ansible's Documentation on how to create self-signed certificates
- Ansible's Documentation on how to create a small CA
- Modesto Mas' blog post for Private Registry
Tasks
- Design
vars/certs.yml
Configuration File - Design playbook for custom Certificate Authority (CA) generation
- Design playbook for device(s) certificates + CA signing
- [traefik] Add CA path + certificate paths to templates and config file
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request
Projects
Status
No status