Perry The Cynic
Dabbler
- Joined
- Aug 15, 2023
- Messages
- 34
I think I've figured out how to make certificates (and CAs) in TrueNAS SCALE.
Now I'm trying to figure out how to get a key and certificate I made into a container (made via the "Launch Docker Image" button). If this was plain Kubernetes, I'd just make a volume mapping that puts a secret into a file inside the container. But this is TrueNAS, and I see no facility for mapping certificates-in-TrueNAS to container files... or, for that matter, to anything else. I see the button for retrieving the generated key and certificate, but that can't be it, can it?
To make this very concrete, the "registry" container allows me to specify TLS operation by configuring a file path (inside the container) for the TLS key and certificate files. How do I make this container use a key/certificate generated in TrueNAS? (Specifically one that I obtained from Let's Encrypt's ACME service via DNS authorization.)
Apologies if this is obvious to experts. I'm new around here, so I'm still trying to find my way around...
Cheers
-- perry
Now I'm trying to figure out how to get a key and certificate I made into a container (made via the "Launch Docker Image" button). If this was plain Kubernetes, I'd just make a volume mapping that puts a secret into a file inside the container. But this is TrueNAS, and I see no facility for mapping certificates-in-TrueNAS to container files... or, for that matter, to anything else. I see the button for retrieving the generated key and certificate, but that can't be it, can it?
To make this very concrete, the "registry" container allows me to specify TLS operation by configuring a file path (inside the container) for the TLS key and certificate files. How do I make this container use a key/certificate generated in TrueNAS? (Specifically one that I obtained from Let's Encrypt's ACME service via DNS authorization.)
Apologies if this is obvious to experts. I'm new around here, so I'm still trying to find my way around...
Cheers
-- perry