VaulTLS
Network SecurityA modern web UI for centralized mTLS and SSH certificate management with ACME, OIDC, notifications, and API support
Features
- Comprehensive TLS X.509 & SSH certificate lifecycle management
- Modern web interface for administration
- OpenID Connect authentication integration
- Email alerts on certificate expiration
- RESTful API for automation
Recent releases
View all 6 releases →
v1.1.1
Bugfix
Fixes mismatch between OpenSSL and rcgen in Certificate Revocation List identifier generation.
v1.1.0
Security relevant
Security fixes
- Vite vulnerability fix
- picomatch vulnerability fix
- yaml vulnerability fix
Notable features
- PEM-format CRL download option
- Password reset environment variables (VAULTLS_ACCOUNT_EMAIL, VAULTLS_ACCOUNT_PASSWORD)
- RFC 5280 TLS certificate extensions (SKI, AKI) for mTLS compliance
v1.0.1
New feature
Breaking changes
- Delete operation now requires revoke first
Security fixes
- Critical settings parsing bug fix
- Security bug fixes
Notable features
- Certificate Revocation Lists
- Dark theme UI
- Revoke before delete workflow
v0.11.0
New feature
Notable features
- Certificate validity granularity
- X.509 OU field support
- OIDC discovery retry
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Install & Platforms
Install via
docker