acme2certifier icon indicating copy to clipboard operation
acme2certifier copied to clipboard

Revoke certificate from acme2certifier not from client

Open flphrrr opened this issue 2 years ago • 1 comments

Understanding the possibility that one System with Certificate provisioned via acme2certifier can be compromised, and consequently no possibility to start the revocation process from acme_client side, there is any way to start revocation process for an specific certificate from acme2certifier_server side, without involving acme_client?

flphrrr avatar May 04 '22 14:05 flphrrr

I see this rather as CA function than a feature of the a2c proxy. But this does not mean that it cannot be done if the revocation method is supported by the ca_handler. What do you have in mind? A kind of shell script or rather a kind of cli-client running on a remote system? And what kind of parameters would you have as input to select the correct certificate?

grindsa avatar May 05 '22 16:05 grindsa

fix got included in v0.27. Thus, I am closing this issue...

grindsa avatar Jun 03 '23 05:06 grindsa