At LY Corporation, we operate a large-scale private cloud along with a Private CA, managing numerous TLS certificates in addition to those issued by Public CAs. Handling certificate expirations and renewals not only drives up operational costs, but also poses challenges due to the increased manual workload and heightened risk of human error. Consequently, establishing a more efficient certificate management ecosystem has become an urgent priority.
In this session, we will first present the current state of certificate management and the existing security measures in our private cloud. Next, we will showcase a case study on automating certificate renewal using cert-manager (Kubernetes), which has been tailored to our in-house ecosystem. Finally, we will discuss our vision for a future, automated certificate management infrastructure.
–
Some errors were made in the presentation materials on the day of the event. We apologize for the correction. The corrected version of the presentation materials can be found at the following URL.
https://speakerdeck.com/lycorptech_jp/efficient-certificate-distribution-strategy-in-private-cloud