Comment on SSL certificates for things inside the lab
magic_smoke@lemmy.blahaj.zone 3 weeks ago
For inside the lan/lab, I have my pem chain looks like: cold storage root-ca -> offline vault qubes VM ca -> pfsense ca -> freeipa
I use letsencrypt for externally facing services.