UNIFIED TLS CERTIFICATE AUTOMATION USING LET'S ENCRYPT
Authors/Creators
Description
This report presents a study and proof of concept (PoC) for the automation of TLS certificate management using the ACME protocol, within the context of CERN’s infrastructure. It begins with a wide review of key concepts in cybersecurity, particularly encryption, and tackles the growing need for automating certificate issuance and renewal. The PoC includes the development of a custom DNS API, and automated certificate deployment scenarios, and the integration of HAProxy with Server Name Indication (SNI) for HTTPS termination. Finally, the report evaluates the feasibility of integrating this automated approach within CERN’s existing systems, outlining both the benefits and limitations of using acme.sh in production environments.
Files
AmelieLECONTE-2025SummerStudent-Report.pdf
Files
(2.5 MB)
| Name | Size | Download all |
|---|---|---|
|
md5:9240829a7a1e221c4ec74e70136b0c81
|
2.5 MB | Preview Download |