Skip to content
Discussion options

You must be logged in to vote

For any future visitors, I figured it out:

The open-source Step Certificate authority can only be configured at an authority level (according to these docs)

A self-hosted step-ca instance can be configured with a policy on the authority level only. In a free hosted smallstep Certificate Manager authority, policies can be configured on the authority, on each provisioner, and on every ACME account.

So, that may be why none of the provisioner commands worked, the self-hosted one can only do rules for authority commands

Ultimately, this is what fixed it, and all at the authority level:

1.) Add wildcard domain to authority
2.) Allow wildcard domains. Even if domain is on allowlist with wildc…

Replies: 4 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@insipx
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by insipx
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants