EonKube uses self-signed certificates by default to secure communications between systems. Self-signed certificates are automatically generated and updated by the cert-management tool, and it will be renewed every three months.
However, the self-signed certificates are not authenticated by a third-party organization. To enhance the security, IEC supports the following ways of managing the certificate and here is the comparison between these methods:
| Manage your certificate | Features |
| Uploading a Certificate |
|
| Uploading a Certificate and Creating a CA Issuer |
|
| Creating an Issuer (ACME Issuer) by Using with HTTP01 or DNS01 Challenges |
|