-
Story
-
Resolution: Done-Errata
-
Undefined
-
rhel-9.2.0
-
mod_md-2.4.26-1.el9
-
None
-
rhel-sst-cs-stacks
-
ssg_core_services
-
20
-
None
-
False
-
-
None
-
Red Hat Enterprise Linux
-
None
-
None
Goal
- Get support of dns_01 challenge to mod_md.
- Red Hat IDM is getting ACME feature ready, and mod_md is one of possible clients for acme:
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html-single/managing_certificates_in_idm/index#the-acme-service-in-idm_deploying-and-managing-the-acme-service-in-idm - mod_md is the only client tested that is shipped by Red Hat, and it only supports http-01 challenge, as IDM's ACME supports both http-01 and dns-01
- We need to support both to enhance security.
- Red Hat IDM is getting ACME feature ready, and mod_md is one of possible clients for acme:
Acceptance Criteria
A list of verification conditions, successful functional tests, or expected outcomes in order to declare this story/task successfully completed.
- mod_md passes both http-01 and dns-01 challenges while requesting certificates via ACME
- links to
-
RHBA-2024:137501 mod_md update
- mentioned on