• Possibly linux@lemmy.zip
    link
    fedilink
    English
    arrow-up
    21
    ·
    edit-2
    11 months ago

    Please no

    It would be nice to figure out a way to get local SSL certs for .lan and .local domains though.

      • Possibly linux@lemmy.zip
        link
        fedilink
        English
        arrow-up
        8
        ·
        11 months ago

        That requires outside authentication though. I think it would be cool to incorporate some SSL into dhcp

        • nbailey@lemmy.ca
          link
          fedilink
          English
          arrow-up
          11
          ·
          11 months ago

          That will never happen. SSL is based on trust, and the trust root will never blindly delegate to whatever happens in random LANs. Subdomain is 100% the right approach for internal network.

          • duplexsystem
            link
            fedilink
            arrow-up
            2
            ·
            edit-2
            11 months ago

            It can and has already happened. You can make your own root ca. Internal domains need internal root cas. Is it a pia to setup yes. Do I have it installed on my unrooted android phone and linux computers? Yes.

            Edit: I didn’t see the dhcp part. But you can still make your own root ca

        • Fontasia@feddit.nl
          link
          fedilink
          arrow-up
          4
          ·
          11 months ago

          The maintainers of DHCP can’t even be bothered standardising a query to check if an address is currently in use, doubt they could take on being a CA at the same time

    • duplexsystem
      link
      fedilink
      arrow-up
      1
      ·
      11 months ago

      You can do this, I already use .internal and you can male your own root ca and make your own certificates with that