profile-pic
nerdcert.eu
Hello, nerds! Want certs? Help build!
General Discussion
Technology/Architecture Discussion
Tool Discussion

About


nerdcert is an idea

How about this: We create an EU based cooperative that works just like letsencrypt in giving you TLS certificates for free, but with more EKU (Extended Key Usage) options? Certificates that aim to also secure the communication between IoT devices, home automation, home labs, gadgets. For (web) servers you already have letsencrypt. No need to replace them.

What do you think?

Is there an opportunity to set up an alternate galaxy of CA/PKI (Certificate Authority/Public Key Infrastructure) that works like Letsencrypt but ONLY delivers certificates with at least two EKU entries, thus making sure they can never be trusted by browsers but can very well work for mTLS, M2M (Machine to Machine) and/or non-browser based human interaction (email, Activitypub etc)?

Thoughts