{"repo":"serpent213/reactor-ca","free":true,"listed":false,"github":"https://github.com/serpent213/reactor-ca","clone":"git clone https://github.com/serpent213/reactor-ca.git","description":"Homelab/SOHO Certificate Authority with age encryption and deployment","language":"Go","stars":125,"topics":["certificates","homelab","tls-certificate","x509"],"license":"BSD-2-Clause","category":"self-hosted-apps","readme_excerpt":"ReactorCA A Go CLI tool to manage a homelab/small-office Certificate Authority with centrally managed, age encrypted private keys. Typical usage scenario: Run it on your desktop once a year or once a month to issue and deploy TLS certificates for your LAN/VPN devices, enabling them to provide HTTPS access without warnings. For easy management, you can keep your (encrypted) CA store and configuration within a Git repository. Table of Contents Features Screenshots Motivation and Design Targets Cryptographic Implementation Core Libraries Key Protection Installation Pre-built Binaries Build from Source Quick Start 1. Initialize Configuration 2. Create CA Certificate 3. Issue Host Certificate 4. List Certificates 5. Export and Deploy Certificates CLI Reference Global Flags CA Management Host Certificate Management Configuration Management Common Workflows New CA Workflow Import Existing CA Certificate Renewal Key Rotation Emergency Access Configuration CA Configuration (config/ca.yaml) Hosts Configuration (config/hosts.yaml) X.509 Certificate Extensions Certificate Defaults Extension Examples by Use Case Available Extensions Basic Constraints Key Usage Extended Key Usage Subject Key Identifier Authority Key Identifier Name Constraints CRL Distribution Points Custom Extensions (Unknown OIDs) Value Encoding Notation Examples Store Structure Cryptographic Options Supported Key Algorithms Supported Hash Algorithms Subject Alternative Name Types Key Protection and Authentication Passwo","default_branch":null,"files":null,"tree":[],"storefront":"/r/serpent213","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/serpent213/reactor-ca/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}