# CertMate

CertMate is a self-hosted tools & utilities app. Self-hosted certificate lifecycle management: issue, renew, discover, inventory and deploy TLS certificates across your infrastructure It is open source and self-hosted, installable on Proxmox.

Canonical page: https://ourlocalhost.com/app/6873/certmate

## Description

Self-hosted certificate lifecycle management: issue, renew, discover, inventory and deploy TLS certificates across your infrastructure

## Platform availability

Available on 1 of 9 platforms: Proxmox.

## Health score

71/100 (Good), based on 3 of 4 factors.
- Maintained: 100 (last commit 3 days ago)
- Popular: 63 (1,448 GitHub stars)
- Easy to install: 25 (1 install platform, install notes)

## Links

- Official website: https://www.certmate.org/
- Documentation: https://www.certmate.org/docs/
- Proxmox: https://community-scripts.github.io/ProxmoxVE/scripts?id=certmate
- GitHub: https://github.com/fabriziosalmi/certmate

## Common questions

### Can CertMate run without Docker?

Yes. The documentation provides a Docker Compose quick start and a systemd service option without Docker.

### How do I issue certificates for a DNS zone that CertMate cannot write?

You can delegate the _acme-challenge CNAME into a zone that CertMate can write, or use a custom script DNS provider that creates the TXT record.

### How are CertMate backups handled?

Backups use a passphrase, support retention, and can be restored through the UI or API.

### Why does CertMate refuse to start with a writable-directory error?

It will not start unless the certificate, data, backup, and log directories are writable. A bind mount that preserves the host directory's ownership is the usual cause.

### Can CertMate use single sign-on?

Yes, CertMate supports OIDC/SSO.

## Alternatives

- Certbot: Automates HTTPS setup using Let's Encrypt certificates and supports multiple servers.
- xca - X Certificate and Key management: X Certificate and Key management is an interface for managing asymetric keys like RSA or DSA.

---
Source: Our Local Host (https://ourlocalhost.com/app/6873/certmate), the self-hosted and open-source app directory.
