4 ms·
This. I always generate my keys or certs or whatever as part of my dev workflow scripts, configure the local environment to read these, and then gitignore the r
by time0ut 4y ago
This. I always generate my keys or certs or whatever as part of my dev workflow scripts, configure the local environment to read these, and then gitignore the resulting files. This way it just works for the rest of team and the mechanisms are plainly visible in the repo.
There are many ways to do this, but one that often fits what I am doing is to use terraform’s TLS provider [0]. Terraform has become pretty ubiquitous for me. I am probably already using it to power other parts of my dev environment setup and teardown. Adding in a call to a little module that spits out a dynamic CA and certs signed by it is really easy.
[0] https://registry.terraform.io/providers/hashicorp/tls/latest/docs https://registry.terraform.io/providers/hashicorp/tls/latest...