Operator — Run your own CA
Run goca yourself. The path opens with what makes this CA unusual — it runs its own PKI, ships notifications, does MFA without an identity provider, offers four-eyes approval and an audit log you can prove — then goes hands-on: stand up a local CA in fifteen minutes, issue your first certificate, and serve the console from your own hierarchy while goca renews the certificate by itself. From there it deepens at your pace: templates and access, protocols, key custody in real hardware, revocation and audit, day-two operations, and finally diagnosing your own environment. One linear path of 107 frames — start at 1, stop when you know enough.
Now I can run my own CA — from first boot to a console served off my own hierarchy — and keep it healthy.
What's in the path
- Why goca frames 1–7
- First Run frames 8–16
- Your Own Certificate frames 17–21
- What You're Running frames 22–28
- CAs & Hierarchy frames 29–37
- Templates & Access frames 38–48
- Protocols frames 49–56
- Users, MFA & Multi-Person Control frames 57–67
- Key Custody & HSM Connection frames 68–80
- Revocation, Notifications & Audit frames 81–89
- Keep It Running frames 90–97
- Troubleshooting Your Environment frames 98–107