From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from firstgate.proxmox.com (firstgate.proxmox.com [212.224.123.68]) by lore.proxmox.com (Postfix) with ESMTPS id 0EF321FF173 for ; Thu, 15 Aug 2024 09:23:08 +0200 (CEST) Received: from firstgate.proxmox.com (localhost [127.0.0.1]) by firstgate.proxmox.com (Proxmox) with ESMTP id 5D4BE547; Thu, 15 Aug 2024 09:23:19 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1723706558; x=1724311358; darn=lists.proxmox.com; h=content-transfer-encoding:organization:subject:from:to :content-language:reply-to:user-agent:mime-version:date:message-id :from:to:cc:subject:date:message-id:reply-to; bh=gFkl6/tg5llHjO3B4UFQNn8JzsgMeZzGTfL4FBu03KA=; b=KGOFrHKJaBoKAK+2+U++aXRSWcso9PiEq/cwXv/IbTIS26IWoVGCjWI5HPx2v16GHU 4dNI+fMXQdRIPp3hVArAGIaJehxqBLBnCVYR+GQAIboNfXqe2St47ooVvWG2gI1fBxaW CuuaI+MoKRp7/3VBMxPp16B5goM65Ufs00hs1yJmzPVmbK26Cggp2z0Wt1cfCHb0TmzD X205I/qk1SMJOpz+vs7fHiW+VLO/4N2iQzVrKap2a1pM/G/iUidmQUwoUd0N4QlqvF00 l5vmqE9ByEYNEtweq+CxxDqm0GjMeHChbbdoQsWUanyZvppp8VJAZtDTy6I7Rr2y8nQk P6wg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1723706558; x=1724311358; h=content-transfer-encoding:organization:subject:from:to :content-language:reply-to:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=gFkl6/tg5llHjO3B4UFQNn8JzsgMeZzGTfL4FBu03KA=; b=TssPeBiXg+eBZP1yMxQOBf1XjNOaWZkHa9ATE0EavdYFeDiy+40HNaX73JBl9RirpV mJ0OcsFTlD/L1cgz5fVtZwabNGg0je4QhIQrdXhXBk0AfxBXtvU1aSi3IGb05qZPB8/I Lbwk1zYP30w6yUdpP+1Gck1DBgvRUC6trQZZD5AqV1M1JhuMu8Se0QaxAqxWGy6Mhl2L x5Xt26MTMLHwzy/PQ/HQ/4OlaRkQJfslkgE3fd+Me0+t6EYhjY1XjvpzxRWBOe6NJgGA h2brIoIcyJBNkF8Rv4ZNzW0dR9epeidJuUSYhF9yt2RMEcTbUNN2/XgHHnw0v1xS6UTT LFNg== X-Gm-Message-State: AOJu0Yz9SGzzTRkUjXc9lkzn9EVcQGNLH8roVtZYtPWbuZepTA9VupAr 0la2M5op19VSx7uTKc6twrkOjJ8cmazBjOiEa4ohpBlbZhg5ZEs6mawCsQ== X-Google-Smtp-Source: AGHT+IE61cynaiToVuksDg/uToonbfXIdRoLM4ua9vEfi+mhrCP7r05P4UHrssdprpexM/6972oSSg== X-Received: by 2002:a05:6a21:150b:b0:1c4:f366:381b with SMTP id adf61e73a8af0-1c8eaf68e46mr6246693637.33.1723706557704; Thu, 15 Aug 2024 00:22:37 -0700 (PDT) Message-ID: <361a29e1-029f-4e25-a081-5ec48d0979b0@gmail.com> Date: Thu, 15 Aug 2024 17:22:34 +1000 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Content-Language: en-AU To: pve-user@lists.proxmox.com From: duluxoz Organization: PEREGRINE I.T. Pty Ltd X-SPAM-LEVEL: Spam detection results: 0 AWL 0.152 Adjusted score from AWL reputation of From: address BAYES_00 -1.9 Bayes spam probability is 0 to 1% DKIM_SIGNED 0.1 Message has a DKIM or DK signature, not necessarily valid DKIM_VALID -0.1 Message has at least one valid DKIM or DK signature DKIM_VALID_AU -0.1 Message has a valid DKIM or DK signature from author's domain DKIM_VALID_EF -0.1 Message has a valid DKIM or DK signature from envelope-from domain DMARC_PASS -0.1 DMARC pass policy FREEMAIL_FROM 0.001 Sender email is commonly abused enduser mail provider RCVD_IN_DNSWL_NONE -0.0001 Sender listed at https://www.dnswl.org/, no trust SPF_HELO_NONE 0.001 SPF: HELO does not publish an SPF Record SPF_PASS -0.001 SPF: sender matches SPF record T_SCC_BODY_TEXT_LINE -0.01 - Subject: [PVE-User] Step-CA And Proxmox X-BeenThere: pve-user@lists.proxmox.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Proxmox VE user list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: matthew@peregrineit.net, Proxmox VE user list Content-Transfer-Encoding: 7bit Content-Type: text/plain; charset="us-ascii"; Format="flowed" Errors-To: pve-user-bounces@lists.proxmox.com Sender: "pve-user" Hi All, We run an internal PKI using the Step-CA project (https://smallstep.com/certificates/). Step-CA can respond to ACME Client requests in exactly the same way that Let's Encrypt does - you simply point the client ACME App/Script (Certbot, acme.sh, etc) to the local CA instead of Let's Encrypt's servers. So our question is: Within Proxmox, which can handle Let's Encrypt Certs, how do we (is it possible too) point the Proxmox ACME Client to our internal Step-CA servers? Is there a config setting we've missed, an Add-On, etc, or something else? Thanks in advance Dulux-Oz _______________________________________________ pve-user mailing list pve-user@lists.proxmox.com https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user