[#]nixos #nix
Nix Gang; What are you using for your homelab internal CA authority?
=> More informations about this toot | More toots from cbleslie@hachyderm.io
@cbleslie right now, just static provisioned files out of band. I might do agenix but more likely step-ca + SPIFFE/spire
=> More informations about this toot | More toots from arichtman@eigenmagic.net
@cbleslie vault + hsms
=> More informations about this toot | More toots from raito@nixos.paris
@cbleslie currently it's all done out of band with a hsm to store the signing keys
=> More informations about this toot | More toots from sophie@catgirl.cloud This content has been proxied by September (ba2dc).Proxy Information
text/gemini