Hacker News new | ask | show | jobs
by Anon_Forever 999 days ago
HashiCorp Vault is a one-stop shop for this. It's an amazing piece of software.
1 comments

Agreed. I've introduced an internal, selfs-signed CA using Vault, ansible and Jenkins for my personal infrastructure. Issues certs via pipeline job and restarts / reloads affected target services if needed.

I might do a writeup soon on this, it's not even that complicated.