Hi Scott, This is possible with a bit of Powershell!
1) external (online) CA can sign, if you have Puppet this works in the same way. 2) you can request and get signed certificates through powershell from your online CA over WMI. I have not to date tested with an intermediate CA as I went the Puppet rlute myself than use one of our CA's. Do note Icinga2 does not check certificate revocation to the best of my knowledge. I can go into a bit more detail if you want me to. Regards, Rune Darrud > Den 21. mar. 2017 kl. 18.29 skrev Scott <sst...@gmail.com>: > > Hi List! > > Is it possible to use my windows CA to sign certificates? I tried > replacing our ca.crt with our intermediate CA certificate which of > course broke everything. > > The problem I am having is the I would like to generate tickets using > rest api and powershell and a trusted certificate is required. > > Invoke-WebRequest : The underlying connection was closed: Could not > establish trust relationship for the SSL/TLS secure channel. > > Thanks, > > Scott. > _______________________________________________ > icinga-users mailing list > icinga-users@lists.icinga.org > https://lists.icinga.org/mailman/listinfo/icinga-users _______________________________________________ icinga-users mailing list icinga-users@lists.icinga.org https://lists.icinga.org/mailman/listinfo/icinga-users