• Possibly linux
    link
    fedilink
    English
    21
    edit-2
    11 months ago

    Please no

    It would be nice to figure out a way to get local SSL certs for .lan and .local domains though.

    • Justin
      link
      fedilink
      English
      1311 months ago

      I just use a subdomain of my main domain and use dns validation of let’s encrypt.

      • Possibly linux
        link
        fedilink
        English
        711 months ago

        That requires outside authentication though. I think it would be cool to incorporate some SSL into dhcp

        • @[email protected]
          link
          fedilink
          English
          1111 months ago

          That will never happen. SSL is based on trust, and the trust root will never blindly delegate to whatever happens in random LANs. Subdomain is 100% the right approach for internal network.

          • @[email protected]
            link
            fedilink
            2
            edit-2
            11 months ago

            It can and has already happened. You can make your own root ca. Internal domains need internal root cas. Is it a pia to setup yes. Do I have it installed on my unrooted android phone and linux computers? Yes.

            Edit: I didn’t see the dhcp part. But you can still make your own root ca

        • Fontasia
          link
          fedilink
          411 months ago

          The maintainers of DHCP can’t even be bothered standardising a query to check if an address is currently in use, doubt they could take on being a CA at the same time

    • @[email protected]
      link
      fedilink
      111 months ago

      You can do this, I already use .internal and you can male your own root ca and make your own certificates with that