Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Step-ca local ACME server

    Scheduled Pinned Locked Moved ACME
    4 Posts 2 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      manny.tew
      last edited by manny.tew

      Is it possible to add to the dropdown an option to configure a custom URL for the ACME CA server?

      We don't want to use Let's Encrypt servers for internal systems.

      The goal is for the Netgate box to use ACME to fetch and renew its cert like all other machines on the internal network.

      1 Reply Last reply Reply Quote 0
      • viktor_gV
        viktor_g Netgate
        last edited by

        There is a feature request:
        https://redmine.pfsense.org/issues/9833

        M 1 Reply Last reply Reply Quote 1
        • M
          manny.tew
          last edited by manny.tew

          It looks like one of the commenters on reddit got it working...i think...not very clear and it was last talked about a year ago...

          https://www.reddit.com/r/PFSENSE/comments/fukt7b/acme_with_custom_private_server/fmghj5j

          From looking at the code, the thing I'm not clear on is exposing port 80 (verification/validation) to the LAN instead of WAN.

          Is this the code? https://github.com/pfsense/FreeBSD-ports/tree/devel/security/pfSense-pkg-acme and are there rules on the PR process?

          1 Reply Last reply Reply Quote 0
          • M
            manny.tew @viktor_g
            last edited by

            @viktor_g I've added a comment to the feature request showing my interest in this. Any idea on getting this added. It really is a game changer for admins responsible for managing certs.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.