DN0000
July 24, 2023, 9:50am
1
It's been a few years since I've seen it discussed here. Is anyone aware of anything that can proxy a request to a SCEP Server as an ACME client?
I've a number of network devices that require publicly trusted certificates, and only support SCEP for furnishing certificates.
smallstep has one, not sure it can used as proxy though
4 Likes
It can't. In this setup, smallstep is the CA and performs the issuance, not an ACME server.
6 Likes
Osiris
July 24, 2023, 12:16pm
4
3 years ago, someone on Github tried it looks like it:
Not much info there though.
Tried to compile it and that seems to work. It's simply tying the lego
ACME client together with a SCEP server written in Go .
4 Likes
rg305
July 24, 2023, 6:37pm
5
Hi @DN0000 , and welcome to the LE community forum
Should that be?:
Is anyone aware of anything that can take a request to a SCEP Server and proxy/modify it as an ACME client to an ACME server?
4 Likes
Osiris
July 24, 2023, 6:39pm
6
See my post just above you?
rg305
July 24, 2023, 6:41pm
7
I'm just trying to understand the question clearly.
Your post is a reply to the question [that I'm asking clarity on].
4 Likes
Osiris
July 24, 2023, 6:42pm
8
Ah, to me, it didn't come across as a request for clarity, so I didn't understand it.
DN0000
July 25, 2023, 3:55pm
9
Clarified wonderfully, thanks!
2 Likes
I recall seeing a few open source "enterprise grade" certificate managers about 3 years ago that would speak ACME to LetsEncrypt/etc to obtain certificates as needed, but spoke different protocols internally. I don't have any bookmarked, but they were all basically Certificate Managers that added in an ACME client.
3 Likes
system
Closed
August 24, 2023, 5:54pm
11
This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.