Which Vault secret engine may be used to build your own internal certificate authority?
Which Vault secret engine may be used to build your own internal certificate authority?
The PKI (Public Key Infrastructure) secret engine in Vault is designed for managing certificates and can be used to build your own internal certificate authority. The Transit engine is used for cryptographic functions, PostgreSQL is for managing database credentials, and the Generic secret engine is for storing arbitrary secrets.
PKI as described here: https://developer.hashicorp.com/vault/tutorials/secrets-management/pki-engine#pki-engine