Skip to content
GitHubLinkedIn

Runtime: Certificate authority (legacy)

This page documents the legacy smallstep/step-ca CA UI that previously lived behind ca.app.lef.

It is being decommissioned. Current certificate workflows are:

  • Windows servers: AD CS (Active Directory Certificate Services)
  • Web servers and DB hosts: manual issuance from the LEF Root CA

See the runbooks:

FieldValue
Public hostnameca.app.lef
Reverse proxy vhostca.app.lef.conf (on web.core.lef)
NGINX upstreamca_app_lef
Backend (internal)tools.core.lef:8443

This runtime is typically deployed as a rootless Podman container, managed via systemd or podman-compose.

FieldValue
Container runtimeSee Containers as a Service
Image
Version (tag/digest)
How to check running version