Skip to content

Increase flexibility of step-ca:hsm docker image #2479

@udf2457

Description

@udf2457

If my understanding of the internals of the step-ca:hsm docker image is correct, it is not possible to use it in a scenario where you want to use if as an intermediate CA, i.e. the root if offline and step-ca:hsm needs to generate a CSR (based on key in TPM) to send to the root.

It would be nice if step-ca:hsm could be made more flexible to accomodate this use-case which I imagine is not uncommon. 😉

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementneeds triageWaiting for discussion / prioritization by team

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions