I have a software running on my server which is called Gitlab. The service is accessible through a SSH
, HTTP
and a HTTPS
endpoint. All three access points are reachable through a SSH tunnel, so binded to 127.0.0.1
.
> 127.0.0.1:80 # HTTP
> 127.0.0.1:443 # HTTPS
> 127.0.0.1:1234 # SSH
To enable HTTPS
, I created my own SSL certificate but of course there is no authority which confirms its authenticity. So even if I satisfy my server to work with it, I am wondering if I should even continue using it.
There are a lot of services on the server, or client tools which connect to it, and all would need to respect their system keychain where the public key is stored in as "trustworthy". Does anyone have experience with this constellation?