u/luckyvb

Support for self hosted CA certificates

Hi all,

I’m running Pangolin as part of a self-hosted setup and would really like to use certificates issued by my own Smallstep CA for boundary services. I have a ... .home.arpa setup I cannot use letsencrypt for and would really like to certify my subdomains.

The goal is to keep services private, avoid exposing them publicly just for ACME/Let’s Encrypt flows, and still have clean HTTPS with certificates trusted by my own devices.

--

Use case:

Internal homelab services behind Pangolin

Private/internal DNS names

Smallstep CA issuing certificates

Pangolin using those certs for reverse proxy TLS

reddit.com
u/luckyvb — 1 day ago