certificates · Issues· 299 open
Open on GitHubLocally synced open issues (discussions stay on GitHub)
- #2804
ACME: option to fail http-01/tls-alpn-01 challenges on connection errors
enhancementneeds triageUpdated Sep 18, 2026 - #473
Database cleanup procedure for ACME data
enhancementneeds triageUpdated Sep 17, 2026 - #2717
Post-Quantum Cryptography: ML-DSA certificate issuance and key generation (Go 1.27 crypto/mldsa now accepted)
enhancementneeds triageUpdated Sep 17, 2026 - #2800
[Bug]: SCEP response signing reuses the configured decrypter key, causing signature verification failures with FIPS-approved-only clients
needs triageUpdated Sep 17, 2026 - #2788
[Docs]: Feature comparison link is broken
needs triageUpdated Sep 4, 2026 - #2713
[Bug]:TestBootstrapClientServerRotation: certificate has expired or is not yet valid: current time 2026-06-15T15:55:08Z is after 2026-06-15T15:55:08Z
bugneeds triageUpdated Sep 4, 2026 - #381
Certificate expiration date later than subCA expiration date
enhancementroadmapUpdated Aug 18, 2026 - #2250
CRL Scope Mismatch with OpenSSL Due to onlyContainsUserCerts in IDP Extension
bugneeds triageUpdated Aug 9, 2026 - #2150
[Bug]: Error on Windows curl CRYPT_E_NO_REVOCATION_CHECK
bugneeds triageUpdated Jul 10, 2026 - #2697
ACME: Add support for DNS-PERSIST-01
enhancementneeds triageUpdated Jul 9, 2026 - #2731
Add --kty and --crv/--curve support to 'step ssh rekey'
enhancementneeds triageUpdated Jul 6, 2026 - #2730
Bump vulnerable golang.org/x/crypto (v0.49.0) and golang.org/x/net (v0.52.0) in v0.30.2
enhancementneeds triageUpdated Jul 2, 2026 - #2724
OIDC provisioner unavailable after transient startup failure
Updated Jun 24, 2026 - #2399
iOS SCEP enrollment fails: “Couldn’t create certificate signing request” (smallstep CA + NGINX)
Updated Jun 23, 2026 - #2723
Quickstart command for PKI results in error about missing file
Updated Jun 23, 2026