-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Labels
improvementGeneric improvement for the homelab setupGeneric improvement for the homelab setuppriority-highHigh priority, should be worked on before any other issues.High priority, should be worked on before any other issues.securitySecurity related changesSecurity related changes
Description
Configure mTLS in Traefik and add it to all services that support it (do not add it to the global configuration if possible).
Store the CA public and private keys in a public and Ansible-Vault protected variable file (base64 encoded) and introduce Ansible workflow to generate a new client certificate signed by the CA.
Metadata
Metadata
Assignees
Labels
improvementGeneric improvement for the homelab setupGeneric improvement for the homelab setuppriority-highHigh priority, should be worked on before any other issues.High priority, should be worked on before any other issues.securitySecurity related changesSecurity related changes