Skip to content

GitLab

  • Menu
Projects Groups Snippets
    • Loading...
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in
  • IT Tickets IT Tickets
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 40
    • Issues 40
    • List
    • Boards
    • Service Desk
    • Milestones
  • Deployments
    • Deployments
    • Releases
  • Activity
  • Graph
  • Create a new issue
  • Commits
  • Issue Boards
Collapse sidebar
  • OSE Germany e.V.
  • Koordination
  • IT
  • IT TicketsIT Tickets
  • Issues
  • #31

Closed
Open
Created Oct 14, 2020 by Andre Lehmann@aisberg🏯Owner

Automatically renew Mumble TLS certificate

Problem to solve

Currently Mumble is using a Let's Encrypt certificate, that is manually copied from the Traefik certificate store. Because of the short lifetime of the certificates, it will expire after only 3 month. If the certificate is not changed in this period, users connecting to Mumble will receive a warning message about the expired certificate. Therefore the error prone manual certificate exchange should be automated.

Proposal

There are some scripts, that can watch Traefiks certificate store for changes and automatically extract changed certs. We can use this feature and combine it with a custom script, that exchanges the cert of Mumble and restarts the Mumble server.

Further details

Documentation

Other links/references

To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information
Assignee
Assign to
Time tracking