Channels
doorman
infrastructure
random
zercurity
community-feeds
fleet-dev
code-review
queryhub
apple-silicon
carving
tls
fim
goquery
zentral
aws
querycon
golang
zeek
file-carving
fuzzing
auditing-warroom
linen-dev
fleetosquery
plugins
jobs
arm-architecture
darkbytes
process-auditing
uptycs
android_tests
selfgroup
vendor-feeds
fleet
eclecticiq-polylogyx-extension
ebpf
website
core
general
macos
kolide
osctrl
extensions
foundation
sql
officehours
linux
windows
Powered by
Title
g
Gavin
08/19/2019, 9:10 PM
CN should be
foo.host.domain
where cert is
*.host.domain
h
harveywells
08/20/2019, 2:18 PM
Does cert order matter?
I think we did this with a Vault issued certificate (internal PKI) and it was leaf, then issuing CA.
We are now using a Digicert cert and have an intermediate cert too.
g
Gavin
08/20/2019, 10:29 PM
yes
https://www.digicert.com/ssl-support/pem-ssl-creation.htm
then confirm with
https://www.digicert.com/help/
h
harveywells
08/21/2019, 8:22 PM
@Gavin
thank you so much for your help and sharing those resources. I was able to switch out the certs with little effort
🤜 🤛
g
Gavin
08/21/2019, 8:34 PM
Awesome
#kolide
Join Slack