Skip to main content

Documentation Index

Fetch the complete documentation index at: https://docs.siderolabs.com/llms.txt

Use this file to discover all available pages before exploring further.

Appending the Certificate Authority (CA)

Append additional certificate authorities to the system’s trusted certificate store by patching the machine configuration with the following document:
apiVersion: v1alpha1
kind: TrustedRootsConfig
name: custom-ca
certificates: |-
    -----BEGIN CERTIFICATE-----
    ...
    -----END CERTIFICATE-----
Multiple documents can be appended, and multiple CA certificates might be present in each configuration document. This configuration can be also applied in maintenance mode. Please note that if the STATE partition is encrypted, the CA certificates will only be loaded after the partition is unlocked. So the encryption method should allow unlocking the partition without the need for a CA certificate.