<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Well isn&#x27;t learning how to run your own CA a lot of fun?]]></title><description><![CDATA[<p>Well isn't learning how to run your own CA a lot of fun?</p><p>And by "fun", I mean "debugging".</p><p>And by "a lot", I mean "a looooooooooot".</p><p>I am making progress, today around SAN and Firefox, but this is a bit like plodding around in treacle.</p><p>(I'm not looking for advice, although sympathy is welcome :))</p>]]></description><link>https://board.circlewithadot.net/topic/f26241f6-e224-41bd-8140-20af9cfe20fc/well-isn-t-learning-how-to-run-your-own-ca-a-lot-of-fun</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 06:42:14 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/f26241f6-e224-41bd-8140-20af9cfe20fc.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 30 Apr 2026 15:34:29 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:08:19 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> 10 years ago I worked on a project implementing PKI including CA, time-stamping, document signers, browser plugins and an installer of all the SW for universities in Slovakia.</p><p>You have my sympathies:P</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.online/users/matus_chochlik/statuses/116494519461761154</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.online/users/matus_chochlik/statuses/116494519461761154</guid><dc:creator><![CDATA[matus_chochlik@mastodon.online]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:08:19 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:06:51 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> I am so looking forward to it!</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.me.uk/users/brunogirin/statuses/116494513700722972</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.me.uk/users/brunogirin/statuses/116494513700722972</guid><dc:creator><![CDATA[brunogirin@mastodon.me.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:06:51 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:06:04 GMT]]></title><description><![CDATA[<p><span><a href="/user/hannes%40social.coop">@<span>hannes</span></a></span> openssl</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494510621846417</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494510621846417</guid><dc:creator><![CDATA[neil@mastodon.neilzone.co.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:06:04 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:05:12 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> are you using openssl command line or some scripts/tooling on top of it?</p>]]></description><link>https://board.circlewithadot.net/post/https://social.coop/users/hannes/statuses/116494507183297781</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.coop/users/hannes/statuses/116494507183297781</guid><dc:creator><![CDATA[hannes@social.coop]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:05:12 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:04:59 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk" rel="nofollow noopener">@<span>neil</span></a></span> been there, done that. there are more fun things in life.</p>]]></description><link>https://board.circlewithadot.net/post/https://social.treehouse.systems/users/kate/statuses/116494506346552479</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.treehouse.systems/users/kate/statuses/116494506346552479</guid><dc:creator><![CDATA[kate@social.treehouse.systems]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:04:59 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:04:27 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> i have it pinned in my calendar</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/gary_alderson/statuses/116494504252226904</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/gary_alderson/statuses/116494504252226904</guid><dc:creator><![CDATA[gary_alderson@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:04:27 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 16:02:49 GMT]]></title><description><![CDATA[<p>You can expect a riveting blogpost in due course.</p><p>And by "riveting", I mean "utterly tedious and unnecessary unless you, too, have the misfortune to want to run your own certificate authority".</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494497824618056</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494497824618056</guid><dc:creator><![CDATA[neil@mastodon.neilzone.co.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:02:49 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:57:49 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> So. Sympathy.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494478171471593</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494478171471593</guid><dc:creator><![CDATA[bencurthoys@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:57:49 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:57:39 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> The answer, it turns out, is that the string was being built from a GUID, and their platform serialised the GUID with lowercase hex and mine with uppercase hex, and your eye doesn't notice the case of the letters when looking at hex values, so I couldn't see that they were different.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494477497577714</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494477497577714</guid><dc:creator><![CDATA[bencurthoys@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:57:39 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:56:13 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> The best part about debugging anything to do with certificates or encryption or security is that any useful debugging information is a security leak... so you don't get any. Either it works, or it doesn't work and it refuses to tell you why. </p><p>Sometimes it's mathematically impossible for it to tell you why. Once I lost more than a day working out why, when I hashed a string, I got a different hash value than was expected, when my hash function returned the same expected value on test data.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494471916153455</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/bencurthoys/statuses/116494471916153455</guid><dc:creator><![CDATA[bencurthoys@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:56:13 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:52:34 GMT]]></title><description><![CDATA[<p><span><a href="/user/colinthemathmo%40mathstodon.xyz">@<span>ColinTheMathmo</span></a></span> Certificate Authority</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494457521288257</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494457521288257</guid><dc:creator><![CDATA[neil@mastodon.neilzone.co.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:52:34 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:51:32 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> Two things:</p><p>(a) What's a "CA" in this context?</p><p>(b) *Sympathy*</p>]]></description><link>https://board.circlewithadot.net/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116494453471042370</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116494453471042370</guid><dc:creator><![CDATA[colinthemathmo@mathstodon.xyz]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:51:32 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:51:24 GMT]]></title><description><![CDATA[<p><span><a href="/user/prsfalken%40mastodon.social">@<span>prsfalken</span></a></span> thx</p>]]></description><link>https://board.circlewithadot.net/post/https://ohai.social/users/GreenSkyOverMe/statuses/116494452973003326</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://ohai.social/users/GreenSkyOverMe/statuses/116494452973003326</guid><dc:creator><![CDATA[greenskyoverme@ohai.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:51:24 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:51:11 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> thx</p>]]></description><link>https://board.circlewithadot.net/post/https://ohai.social/users/GreenSkyOverMe/statuses/116494452081082285</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://ohai.social/users/GreenSkyOverMe/statuses/116494452081082285</guid><dc:creator><![CDATA[greenskyoverme@ohai.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:51:11 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:46:48 GMT]]></title><description><![CDATA[<p><span><a href="/user/matthewcroughan%40social.defenestrate.it">@<span>matthewcroughan</span></a></span> </p><p>There are some services that I run where I would like TLS, would prefer not to expose them to the Internet, am not keen on moving around Let's Encrypt cert, and would prefer them to be trusted certificates rather than self-signed certificates, to work better on mobile devices.</p><p>Also, a fun learning exercise.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494434832241479</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494434832241479</guid><dc:creator><![CDATA[neil@mastodon.neilzone.co.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:46:48 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:46:45 GMT]]></title><description><![CDATA[Sending my deepest sympathies to you at these trying times. But letting you know that things will get better.<br />]]></description><link>https://board.circlewithadot.net/post/https://snac.smithies.me.uk/justine/p/1777564005.153801</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://snac.smithies.me.uk/justine/p/1777564005.153801</guid><dc:creator><![CDATA[justine@snac.smithies.me.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:46:45 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:46:34 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk" rel="nofollow noreferrer noopener">@<span>neil</span></a></span> I look forward to the blog post for this one! Sounds like a more challenging project than usual.</p>]]></description><link>https://board.circlewithadot.net/post/https://social.seabass.systems/users/seabass/statuses/01KQFH41X6T3BWMQ370BZA12EJ</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.seabass.systems/users/seabass/statuses/01KQFH41X6T3BWMQ370BZA12EJ</guid><dc:creator><![CDATA[seabass@social.seabass.systems]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:46:34 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:45:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/greenskyoverme%40ohai.social">@<span>GreenSkyOverMe</span></a></span> Certificate Authority</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494430088676013</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.neilzone.co.uk/users/neil/statuses/116494430088676013</guid><dc:creator><![CDATA[neil@mastodon.neilzone.co.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:45:35 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:45:06 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> Are you doing okay, Neil? Who has a gun pointing at you and telling you to run your own CA? Is it <span><a href="/user/babe%40glitterkitten.co.uk">@<span>babe</span></a></span> again? <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f440.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--eyes" style="height:23px;width:auto;vertical-align:middle" title="👀" alt="👀" /></p>]]></description><link>https://board.circlewithadot.net/post/https://fosstodon.org/users/graves501/statuses/116494428194618164</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://fosstodon.org/users/graves501/statuses/116494428194618164</guid><dc:creator><![CDATA[graves501@fosstodon.org]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:45:06 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:42:05 GMT]]></title><description><![CDATA[<p><span><a href="/user/greenskyoverme%40ohai.social">@<span>GreenSkyOverMe</span></a></span> <span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> Something you usually don't selfhost and if you do ... Avoid to mess with </p><p>XD</p><p>(Certificate authority, if I'm not mistaken)</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/prsfalken/statuses/116494416339200959</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/prsfalken/statuses/116494416339200959</guid><dc:creator><![CDATA[prsfalken@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:42:05 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:41:44 GMT]]></title><description><![CDATA[<p><span><a href="/user/matthewcroughan%40social.defenestrate.it">@<span>matthewcroughan</span></a></span> <span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> <br />My question exactly. Why?</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.me.uk/users/brunogirin/statuses/116494414916148901</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.me.uk/users/brunogirin/statuses/116494414916148901</guid><dc:creator><![CDATA[brunogirin@mastodon.me.uk]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:41:44 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:41:28 GMT]]></title><description><![CDATA[<p><span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> good luck!</p>]]></description><link>https://board.circlewithadot.net/post/https://tilde.zone/users/9pfs/statuses/116494413915748799</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://tilde.zone/users/9pfs/statuses/116494413915748799</guid><dc:creator><![CDATA[9pfs@tilde.zone]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:41:28 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:41:15 GMT]]></title><description><![CDATA[<p><span><a href="/user/greenskyoverme%40ohai.social">@<span>GreenSkyOverMe</span></a></span> <span><a href="/user/neil%40mastodon.neilzone.co.uk">@<span>neil</span></a></span> certificate authority</p>]]></description><link>https://board.circlewithadot.net/post/https://tilde.zone/users/9pfs/statuses/116494413007265104</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://tilde.zone/users/9pfs/statuses/116494413007265104</guid><dc:creator><![CDATA[9pfs@tilde.zone]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:41:15 GMT</pubDate></item><item><title><![CDATA[Reply to Well isn&#x27;t learning how to run your own CA a lot of fun? on Thu, 30 Apr 2026 15:38:18 GMT]]></title><description><![CDATA[How come you're bothering to do it?]]></description><link>https://board.circlewithadot.net/post/https://social.defenestrate.it/objects/6aa88ca3-eb74-42f7-88f3-7327166c54e4</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.defenestrate.it/objects/6aa88ca3-eb74-42f7-88f3-7327166c54e4</guid><dc:creator><![CDATA[matthewcroughan@social.defenestrate.it]]></dc:creator><pubDate>Thu, 30 Apr 2026 15:38:18 GMT</pubDate></item></channel></rss>