Merge pull request #2030 from Infisical/doc/added-guide-for-configuring-certs

doc: added guide for configuring certs
This commit is contained in:
Maidul Islam
2024-06-26 15:30:15 -04:00
committed by GitHub
3 changed files with 37 additions and 9 deletions
+3 -2
View File
@@ -77,11 +77,12 @@ description: "How to sync secrets from Infisical to GitLab"
</Steps> </Steps>
</Accordion> </Accordion>
</AccordionGroup> </AccordionGroup>
</Tab> </Tab>
<Tab title="Self-Hosted Setup"> <Tab title="Self-Hosted Setup">
Using the GitLab integration on a self-hosted instance of Infisical requires configuring an application in GitLab Using the GitLab integration on a self-hosted instance of Infisical requires configuring an application in GitLab
and registering your instance with it. and registering your instance with it.
<Tip>If you're self-hosting Gitlab with custom certificates, you will have to configure your Infisical instance to trust these certificates. To learn how, please follow [this guide](../../self-hosting/guides/custom-certificates).</Tip>
<Steps> <Steps>
<Step title="Create an OAuth application in GitLab"> <Step title="Create an OAuth application in GitLab">
Navigate to your user Settings > Applications to create a new GitLab application. Navigate to your user Settings > Applications to create a new GitLab application.
@@ -111,6 +112,6 @@ description: "How to sync secrets from Infisical to GitLab"
Once added, restart your Infisical instance and use the GitLab integration. Once added, restart your Infisical instance and use the GitLab integration.
</Step> </Step>
</Steps> </Steps>
</Tab> </Tab>
</Tabs> </Tabs>
+2 -1
View File
@@ -222,7 +222,8 @@
"group": "Guides", "group": "Guides",
"pages": [ "pages": [
"self-hosting/configuration/schema-migrations", "self-hosting/configuration/schema-migrations",
"self-hosting/guides/mongo-to-postgres" "self-hosting/guides/mongo-to-postgres",
"self-hosting/guides/custom-certificates"
] ]
}, },
{ {
@@ -0,0 +1,26 @@
---
title: "Adding Custom Certificates"
description: "Learn how to configure Infisical with custom certificates"
---
By default, the Infisical Docker image includes certificates from well-known public certificate authorities.
However, some integrations with Infisical may need to communicate with your internal services that use private certificate authorities.
To configure trust for custom certificates, follow these steps. This is particularly useful for connecting Infisical with self-hosted services like GitLab.
## Prerequisites
- Docker
- Standalone [Infisical image](https://hub.docker.com/r/infisical/infisical)
- Certificate public key `.pem` files
## Setup
1. Place all your public key `.pem` files into a single directory.
2. Mount the directory containing the `.pem` files to the `usr/local/share/ca-certificates/` path in the Infisical container.
3. Set the following environment variable on your Infisical container:
```
NODE_EXTRA_CA_CERTS=/etc/ssl/certs/ca-certificates.crt
```
4. Start the Infisical container.
By following these steps, your Infisical container will trust the specified certificates, allowing you to securely connect Infisical to your internal services.