Haproxy/acme on proxmox host or pfsense?

juju01

Member
May 16, 2020
87
3
13
I am looking to use acme certificates with haproxy on my pfsense vm to offload /manage certificates on local clients - like my synology box. On a physical pfsense box, this is usually involves installing the acme and haproxy packages on pfsense.

Now, with my pfsense virtualized in proxmox, I am getting myself confused how this should be setup. Is it better to setup the letsencrypt certifcates / haproxy on the proxmox host and let it manage everything from there? or do it in pfsense? How are you guys doing this?

if I do it on the proxmox host:
  1. how do I get certifcates to pfsense (to use as pfsense's own internal certificate) ?
  2. how do i get the certificates to my synology box?
 
AFAICT this should be done on the VMs that need the certificates. AFAIK the Letsencrypt integration in PVE is for it's own certificates used for the GUI and API.