From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from firstgate.proxmox.com (firstgate.proxmox.com [212.224.123.68]) by lore.proxmox.com (Postfix) with ESMTPS id 7BB381FF174 for ; Fri, 16 Aug 2024 09:22:32 +0200 (CEST) Received: from firstgate.proxmox.com (localhost [127.0.0.1]) by firstgate.proxmox.com (Proxmox) with ESMTP id ACA39EFF5; Fri, 16 Aug 2024 09:22:45 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1723792960; x=1724397760; darn=lists.proxmox.com; h=in-reply-to:organization:from:content-language:reply-to:subject :references:to:user-agent:mime-version:date:message-id:from:to:cc :subject:date:message-id:reply-to; bh=fS4XHFYdoH1ViCKWF7oKbU6NRMA7pyu+26GjrPzCgac=; b=ESak+dHR7Ejbtmp0UdJpALSW7i+X/PyhCO9vymt1KRBw2WATYXRsaIs04qTWLoQE2D JRkOV7MEb9I+53GjWieQhWbKevmiftVdEyLhGXY9O23T52+s5TKS66cm11yl3kraHQnd 0+I4IMO+6YvZvTmW4Bf7QFvuR4WH3lgy9m6g7AkU33/TbixzPLeF2b/T68iGUNgA4vJJ VTLtXvEz7ZrLUMghxXG0S1fPMa4jXYYyVBi7J40gv9AiWvMAL2eAylHj2k4cTiCRKXea DYaWu0/IasEOdiHTP5PdOeuoc02bI11SuFluav33nBH5pmkWyWAajIoj8YpRM/u44MWR 5TQg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1723792960; x=1724397760; h=in-reply-to:organization:from:content-language:reply-to:subject :references:to:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=fS4XHFYdoH1ViCKWF7oKbU6NRMA7pyu+26GjrPzCgac=; b=iDIPu8zdc+vNxx31oDNPcG8MSZ3G+TA8g5N+Ga6h90Cy69hIemzQovPAowVdp9CJxE 0t3aHNb7OEElor+B5vn1yZ3x5gQ9XgF0tHDQ70dAfMWz9QUnlDVTOqGHzKvOipgpD9Mw i9hzrsQ7AeIBwwgyTnh1oS9byizeK320KNORqnkhA0LFuFB1IqhGX5oej6DGM+K6SXfH MA8ys9cPKXDhG4ul1h+QDHOfOpFobMHQKzBUH/L+k15j114QRdm2/VyldJvKRT3i3I9x y9nAmzkdC7kEHI364gYc3hw0liNL3myfUEFLaVlE1GaZLWW+RWMf1CkO7qnkw/jfeWMT H9Hg== X-Gm-Message-State: AOJu0Yx/O7MYoeZcWiTb1b/LyZwMfkNJ6InltNe5bBCF1G8DgZePuhKG 5YzpGK0UQcJhrnMd+nrVtJ4Sn9ny0SoaqKA2XCt9NRosZJvQFdgrMVCP+g== X-Google-Smtp-Source: AGHT+IG7L/kaGP1gINoKsWHDm1hYQCl55hdzdiDfSdh+Q+I+Lj85zLuSDgpVDxLU9miK3VTPgCm8rg== X-Received: by 2002:a17:90a:a787:b0:2cb:3306:b2cc with SMTP id 98e67ed59e1d1-2d3dfc2aa4amr2398642a91.1.1723792959783; Fri, 16 Aug 2024 00:22:39 -0700 (PDT) Message-ID: Date: Fri, 16 Aug 2024 17:22:36 +1000 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird To: pve-user@lists.proxmox.com References: <7de96d1d-0c43-4b7e-a513-7fc782cb587f@proxmox.com> Content-Language: en-AU From: duluxoz Organization: PEREGRINE I.T. Pty Ltd In-Reply-To: <7de96d1d-0c43-4b7e-a513-7fc782cb587f@proxmox.com> X-SPAM-LEVEL: Spam detection results: 0 AWL 0.126 Adjusted score from AWL reputation of From: address BAYES_00 -1.9 Bayes spam probability is 0 to 1% DKIM_SIGNED 0.1 Message has a DKIM or DK signature, not necessarily valid DKIM_VALID -0.1 Message has at least one valid DKIM or DK signature DKIM_VALID_AU -0.1 Message has a valid DKIM or DK signature from author's domain DKIM_VALID_EF -0.1 Message has a valid DKIM or DK signature from envelope-from domain DMARC_PASS -0.1 DMARC pass policy FREEMAIL_FROM 0.001 Sender email is commonly abused enduser mail provider HTML_MESSAGE 0.001 HTML included in message RCVD_IN_DNSWL_NONE -0.0001 Sender listed at https://www.dnswl.org/, no trust SPF_HELO_NONE 0.001 SPF: HELO does not publish an SPF Record SPF_PASS -0.001 SPF: sender matches SPF record T_SCC_BODY_TEXT_LINE -0.01 - URIBL_BLOCKED 0.001 ADMINISTRATOR NOTICE: The query to URIBL was blocked. See http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block for more information. [smallstep.com, proxmox.com] X-Content-Filtered-By: Mailman/MimeDel 2.1.29 Subject: Re: [PVE-User] Step-CA And Proxmox X-BeenThere: pve-user@lists.proxmox.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Proxmox VE user list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: matthew@peregrineit.net, Proxmox VE user list Content-Transfer-Encoding: 7bit Content-Type: text/plain; charset="us-ascii"; Format="flowed" Errors-To: pve-user-bounces@lists.proxmox.com Sender: "pve-user" Thanks. And that's in the manual? I must have missed it :-) Cheers > With recent versions it is possible to add custom ACME directories. That > should most likely do what you need? > >> On 2024-08-15 09:22, duluxoz wrote: >>/Hi All, />>//>>/We run an internal PKI using the Step-CA project />>/(https://smallstep.com/certificates/). />>//>>/Step-CA can respond to ACME Client requests in exactly the same way that />>/Let's Encrypt does - you simply point the client ACME App/Script />>/(Certbot, acme.sh, etc) to the local CA instead of Let's Encrypt's servers. />>//>>/So our question is: Within Proxmox, which can handle Let's Encrypt />>/Certs, how do we (is it possible too) point the Proxmox ACME Client to />>/our internal Step-CA servers? Is there a config setting we've missed, an />>/Add-On, etc, or something else? />>//>>/Thanks in advance />>//>>/Dulux-Oz />>//>>//>>/_______________________________________________ />>/pve-user mailing list />>/pve-user at lists.proxmox.com />>/https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user / _______________________________________________ pve-user mailing list pve-user@lists.proxmox.com https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user