Setting up Internal LAN Let's Encrypt Certificate Authority (CA)

Hi,

I am running CentOS Linux release 7.9.2009 (Core). Is there a way to configure Let's Encrypt
Certificate Authority (CA) in CentOS 7 to create digital certificates for servers on LAN or for VPN clients that need SSL Certificates.

https://gitlab.int.mydomain.com for example.

Thanks in Advance. Please guide.

Best Regards,

Kaushal

Hi @kaushalshriyan

start with some required basics:

Then select a client

install the client and create certificates.

Setting up Internal LAN Let’s Encrypt Certificate Authority (CA)

Please explain. You can't create your own Sub CA.

If you want help, your domain name is required.

@JuergenAuer Thanks for the detailed explanation. I have an internal FQDN DNS name which is gitlab.int.mydomain.com mapped to IP:- 192.168.0.151 ( LAN IP). Is there a way to enable SSL certs https://gitlab.int.mydomain.com using Lets Encrypt CA?

Thanks in Advance. Please suggest further.

Best Regards,

Kaushal

Your question says: You didn't read the required basics. Please change that.

Yes, but only if you "own" (can adjust public DNS records for) mydomain.com. You'll be using the dns-01 challenge type and need to be able to create a TXT record for _acme-challenge.gitlab.int.mydomain.com that is queryable from the Internet.

3 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.