Settings

Theme

Show HN: Caman – A self-signing certificate authority manager

github.com

26 points by radiac 10 years ago · 6 comments

Reader

tokenizerrr 10 years ago

How does this compare to CA-baka?

https://github.com/SethRobertson/CA-baka

  • radiacOP 10 years ago

    I hadn't come across this when I wrote caman; from the looks of things caman is simpler to use, but missing a couple of features - alt hostname support for SAN certificates (which I'm adding at the moment and should be up later today) and ability to use a subsidiary certificate authority.

    I wrote caman because I could never remember what to type, so it has simple syntax - 4 commands, to add a new host, sign, revoke and renew; the only argument they take are the hostname. Configuration is a one-off when setting up your CA - there are two openssl config files with sensible defaults based on openssl best practice, with a few values for you to customise, and some basic templating for caman to fill out later.

    • radiacOP 10 years ago

      I've added an experimental branch with SAN support, but I haven't had a chance to test it fully yet; any feedback would be appreciated.

  • curun1r 10 years ago
raidan 10 years ago

In the past I've used etcd-ca[0] to perform a similar function, though probably not it's original intention.

[0] https://github.com/coreos/etcd-ca

  • eliaspro 10 years ago

    Just playing with SaltStack's recently added x509 state for a fully autonomous/self-signed CA incl deployment to the clients.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection