From mboxrd@z Thu Jan  1 00:00:00 1970
Return-Path: <pve-user-bounces@lists.proxmox.com>
Received: from firstgate.proxmox.com (firstgate.proxmox.com [212.224.123.68])
	by lore.proxmox.com (Postfix) with ESMTPS id 0EF321FF173
	for <inbox@lore.proxmox.com>; Thu, 15 Aug 2024 09:23:08 +0200 (CEST)
Received: from firstgate.proxmox.com (localhost [127.0.0.1])
	by firstgate.proxmox.com (Proxmox) with ESMTP id 5D4BE547;
	Thu, 15 Aug 2024 09:23:19 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
 d=gmail.com; s=20230601; t=1723706558; x=1724311358; darn=lists.proxmox.com;
 h=content-transfer-encoding:organization:subject:from:to
 :content-language:reply-to:user-agent:mime-version:date:message-id
 :from:to:cc:subject:date:message-id:reply-to;
 bh=gFkl6/tg5llHjO3B4UFQNn8JzsgMeZzGTfL4FBu03KA=;
 b=KGOFrHKJaBoKAK+2+U++aXRSWcso9PiEq/cwXv/IbTIS26IWoVGCjWI5HPx2v16GHU
 4dNI+fMXQdRIPp3hVArAGIaJehxqBLBnCVYR+GQAIboNfXqe2St47ooVvWG2gI1fBxaW
 CuuaI+MoKRp7/3VBMxPp16B5goM65Ufs00hs1yJmzPVmbK26Cggp2z0Wt1cfCHb0TmzD
 X205I/qk1SMJOpz+vs7fHiW+VLO/4N2iQzVrKap2a1pM/G/iUidmQUwoUd0N4QlqvF00
 l5vmqE9ByEYNEtweq+CxxDqm0GjMeHChbbdoQsWUanyZvppp8VJAZtDTy6I7Rr2y8nQk
 P6wg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
 d=1e100.net; s=20230601; t=1723706558; x=1724311358;
 h=content-transfer-encoding:organization:subject:from:to
 :content-language:reply-to:user-agent:mime-version:date:message-id
 :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to;
 bh=gFkl6/tg5llHjO3B4UFQNn8JzsgMeZzGTfL4FBu03KA=;
 b=TssPeBiXg+eBZP1yMxQOBf1XjNOaWZkHa9ATE0EavdYFeDiy+40HNaX73JBl9RirpV
 mJ0OcsFTlD/L1cgz5fVtZwabNGg0je4QhIQrdXhXBk0AfxBXtvU1aSi3IGb05qZPB8/I
 Lbwk1zYP30w6yUdpP+1Gck1DBgvRUC6trQZZD5AqV1M1JhuMu8Se0QaxAqxWGy6Mhl2L
 x5Xt26MTMLHwzy/PQ/HQ/4OlaRkQJfslkgE3fd+Me0+t6EYhjY1XjvpzxRWBOe6NJgGA
 h2brIoIcyJBNkF8Rv4ZNzW0dR9epeidJuUSYhF9yt2RMEcTbUNN2/XgHHnw0v1xS6UTT
 LFNg==
X-Gm-Message-State: AOJu0Yz9SGzzTRkUjXc9lkzn9EVcQGNLH8roVtZYtPWbuZepTA9VupAr
 0la2M5op19VSx7uTKc6twrkOjJ8cmazBjOiEa4ohpBlbZhg5ZEs6mawCsQ==
X-Google-Smtp-Source: AGHT+IE61cynaiToVuksDg/uToonbfXIdRoLM4ua9vEfi+mhrCP7r05P4UHrssdprpexM/6972oSSg==
X-Received: by 2002:a05:6a21:150b:b0:1c4:f366:381b with SMTP id
 adf61e73a8af0-1c8eaf68e46mr6246693637.33.1723706557704; 
 Thu, 15 Aug 2024 00:22:37 -0700 (PDT)
Message-ID: <361a29e1-029f-4e25-a081-5ec48d0979b0@gmail.com>
Date: Thu, 15 Aug 2024 17:22:34 +1000
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
Content-Language: en-AU
To: pve-user@lists.proxmox.com
From: duluxoz <duluxoz@gmail.com>
Organization: PEREGRINE I.T. Pty Ltd
X-SPAM-LEVEL: Spam detection results:  0
 AWL 0.152 Adjusted score from AWL reputation of From: address
 BAYES_00                 -1.9 Bayes spam probability is 0 to 1%
 DKIM_SIGNED               0.1 Message has a DKIM or DK signature,
 not necessarily valid
 DKIM_VALID -0.1 Message has at least one valid DKIM or DK signature
 DKIM_VALID_AU -0.1 Message has a valid DKIM or DK signature from author's
 domain
 DKIM_VALID_EF -0.1 Message has a valid DKIM or DK signature from envelope-from
 domain DMARC_PASS               -0.1 DMARC pass policy
 FREEMAIL_FROM 0.001 Sender email is commonly abused enduser mail provider
 RCVD_IN_DNSWL_NONE     -0.0001 Sender listed at https://www.dnswl.org/,
 no trust
 SPF_HELO_NONE           0.001 SPF: HELO does not publish an SPF Record
 SPF_PASS               -0.001 SPF: sender matches SPF record
 T_SCC_BODY_TEXT_LINE    -0.01 -
Subject: [PVE-User] Step-CA And Proxmox
X-BeenThere: pve-user@lists.proxmox.com
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Proxmox VE user list <pve-user.lists.proxmox.com>
List-Unsubscribe: <https://lists.proxmox.com/cgi-bin/mailman/options/pve-user>, 
 <mailto:pve-user-request@lists.proxmox.com?subject=unsubscribe>
List-Archive: <http://lists.proxmox.com/pipermail/pve-user/>
List-Post: <mailto:pve-user@lists.proxmox.com>
List-Help: <mailto:pve-user-request@lists.proxmox.com?subject=help>
List-Subscribe: <https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user>, 
 <mailto:pve-user-request@lists.proxmox.com?subject=subscribe>
Reply-To: matthew@peregrineit.net,
 Proxmox VE user list <pve-user@lists.proxmox.com>
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"; Format="flowed"
Errors-To: pve-user-bounces@lists.proxmox.com
Sender: "pve-user" <pve-user-bounces@lists.proxmox.com>

Hi All,

We run an internal PKI using the Step-CA project 
(https://smallstep.com/certificates/).

Step-CA can respond to ACME Client requests in exactly the same way that 
Let's Encrypt does - you simply point the client ACME App/Script 
(Certbot, acme.sh, etc) to the local CA instead of Let's Encrypt's servers.

So our question is: Within Proxmox, which can handle Let's Encrypt 
Certs, how do we (is it possible too) point the Proxmox ACME Client to 
our internal Step-CA servers? Is there a config setting we've missed, an 
Add-On, etc, or something else?

Thanks in advance

Dulux-Oz


_______________________________________________
pve-user mailing list
pve-user@lists.proxmox.com
https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user