Skip to content

mTLS support #10

@SeboCode

Description

@SeboCode

Configure mTLS in Traefik and add it to all services that support it (do not add it to the global configuration if possible).

Store the CA public and private keys in a public and Ansible-Vault protected variable file (base64 encoded) and introduce Ansible workflow to generate a new client certificate signed by the CA.

Metadata

Metadata

Assignees

Labels

improvementGeneric improvement for the homelab setuppriority-highHigh priority, should be worked on before any other issues.securitySecurity related changes

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions