-
Notifications
You must be signed in to change notification settings - Fork 493
Open
Labels
area/X509X509 CertificatesX509 CertificatesduplicateenhancementroadmapAn item for roadmap discussionAn item for roadmap discussion
Milestone
Description
It would be handy to have an easy way of generating intermediate certificates after the ca init step and then choose which one to sign with when generating certs (maybe by provisioner).
Not everything can do online renewal and obey the standards enforced so having a shorter lived intermediate for signing this legacy stuff would be super useful. A lot of devices also don't support the proper cert chain so I'm having to distribute the intermediate cert with the root cert to clients and I'd rather keep that separate from the intermediate doing online provisioning.
wagnerflo, dopey, Thomas2500, crdant, DonOtuseGH and 2 moreMaxwellDPSMaxwellDPS
Metadata
Metadata
Assignees
Labels
area/X509X509 CertificatesX509 CertificatesduplicateenhancementroadmapAn item for roadmap discussionAn item for roadmap discussion