Comment on SSL certificates for things inside the lab
magic_smoke@lemmy.blahaj.zone 2 days ago
For inside the lan/lab, I have my pem chain looks like: cold storage root-ca -> offline vault qubes VM ca -> pfsense ca -> freeipa
I use letsencrypt for externally facing services.