Icinga / Icinga/icinga-powershell-framework

Icinga CA trusted system wide on Windows

Open
#825 2 comments 0 reactions 1 assignee View on GitHub

@LordHepipud is already working on this.

Since Dec 1, 2025.

Question
Dominant language
PowerShell
Stars
87
Forks
34
PR merge metrics
No merged PRs in 30d

Description

Icinga uses its own local Certificate Authority to handle certificates between masters, satellites and agents. On Windows servers, the Icinga CA is stored under "Trusted Root Certification Authorities" and "Third-Party Root Certification Authorities" making it trusted system wide.

Should the Icinga CA be trusted only for the Icinga service and not system wide? If so, what is the recommended approach to restrict its trust to only Icinga related components?

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.