Skip to content

Setup and Enable HTTPS / TLS Security Configuration #70

@shantanoo-desai

Description

@shantanoo-desai

Description

Generate Self-Signed TLS certificates + Root Certificate Authority for Komponist. The Root CA + Certificates / Keys will be used by traefik reverse-proxy for TLS-Termination for the running services. The Root CA will be saved under /usr/local/share/ca-certificates/ to make it acceptable for the Control Node (as well as for browsers).

References

Tasks

  • Design vars/certs.yml Configuration File
  • Design playbook for custom Certificate Authority (CA) generation
  • Design playbook for device(s) certificates + CA signing
  • [traefik] Add CA path + certificate paths to templates and config file

Metadata

Metadata

Labels

enhancementNew feature or request

Projects

Status

No status

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions