Skip to content
This repository has been archived by the owner on Oct 4, 2024. It is now read-only.

Allow Subordinate Enterprise CA instances to launch in a Public Subnet #57

Open
fjleon1980 opened this issue Aug 22, 2022 · 0 comments
Open

Comments

@fjleon1980
Copy link

Right now, the template is forcing the subordinate enterprise CA instance to launch in a private subnet. This is wrong, because in some cases, you need to make the CA reachable over the internet. For example, if you need to support smart card authentication for WorkSpaces, your AD Connector needs to be able to reach the OCSP URL via HTTP over the internet.

CaServerSubnet: !GetAtt VPCStack.Outputs.PrivateSubnet1AID

This line needs to be modified, and a new parameter needs to be selected by the user

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant