<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>CA on My IT Journal</title>
    <link>https://my-it-blog.netlify.app/tags/ca/</link>
    <description>Recent content in CA on My IT Journal</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 08 Jul 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://my-it-blog.netlify.app/tags/ca/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>HTTPS with Nginx using a Private Certificate Authority</title>
      <link>https://my-it-blog.netlify.app/posts/private-certificate-authority/</link>
      <pubDate>Wed, 08 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://my-it-blog.netlify.app/posts/private-certificate-authority/</guid>
      <description>&lt;h1 id=&#34;https-with-nginx-using-a-private-certificate-authority&#34;&gt;HTTPS with Nginx using a Private Certificate Authority&lt;/h1&gt;
&lt;h2 id=&#34;objective&#34;&gt;Objective&lt;/h2&gt;
&lt;p&gt;Secure an existing Nginx website using HTTPS and a certificate signed by a private Certificate Authority.&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;environment&#34;&gt;Environment&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Virtualization: VirtualBox&lt;/li&gt;
&lt;li&gt;OS: ( 1 DNS Server VM + 1 Web Server VM + 1 Client VM)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;network-topology&#34;&gt;Network Topology&lt;/h2&gt;
&lt;p&gt;&lt;img alt=&#34;dns-topology&#34; loading=&#34;lazy&#34; src=&#34;https://my-it-blog.netlify.app/posts/private-certificate-authority/dns-topology.png&#34;&gt;&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&lt;/h2&gt;
&lt;p&gt;This lab builds upon the Private DNS Infrastructure with BIND9. The following components are assumed to already be configured:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;BIND9 installed and running on the DNS server.&lt;/li&gt;
&lt;li&gt;The company.lab DNS zone created and configured.&lt;/li&gt;
&lt;li&gt;The zone file (/etc/bind/db.company.lab) already exists.&lt;/li&gt;
&lt;li&gt;The client is configured to use the internal DNS server (192.168.10.10) via Netplan.&lt;/li&gt;
&lt;li&gt;DNS resolution between the client and the DNS server has been verified.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr&gt;
&lt;h2 id=&#34;phase-1---verify-dns-resolution&#34;&gt;Phase 1 - Verify DNS Resolution&lt;/h2&gt;
&lt;p&gt;Before enabling HTTPS, verify that DNS resolves the web server correctly.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
