Writing / Field notes
Writing
Notes from the work: PKI and HashiCorp Vault, Ansible, and keeping infrastructure honest. The pieces here are the ones closest to what’s in the index; they live in full on tfindley.co.uk.
- Building a Certificate Manager for HashiCorp Vault A Python certificate manager that automates TLS issuance and renewal from Vault. The write-up behind the Vault Cert Manager tool in the index.
- Let’s Encrypt with High Availability Obtaining and managing Let’s Encrypt certificates across a high-availability pair with Keepalived and a floating VIP.
- HashiCorp Vault as an ACME Certificate Provider Configuring Vault as an ACME provider to issue TLS certificates inside a homelab or enterprise PKI.
- Building a Self-Signed Certificate Authority Standing up a self-signed certificate authority with Bash and OpenSSL, for labs and air-gapped environments.
- Lab Outage How a DNS and NTP dependency loop cascaded into a full homelab outage, and what it taught me.
- Building an Ansible Development Environment Setting up a clean Ansible development environment with Python virtual environments, on Linux and macOS.
More at tfindley.co.uk/posts ↗