There’s absolutely no reason you shouldn’t be using @letsencrypt at this point. It’s not only free but also the most convenient option.
EV is an absolute sham (cert neutrality anyone?) Wildcard can be emulated. Good points re: offline/legacy.
-
-
I believe it's currently 100 certificate requests per IP per month or so, not enough for things that need wildcards.
-
Depends on your use case, I guess – for ours, I could easily replace our wildcard cert :)+
@letsencrypt -
I'm thinking more multi-tenant environments (community/forum hosts?), things like htmlb.in, and so on.
-
Gotcha; yeah – those would definitely hit current rate limits.+
@letsencrypt
End of conversation
New conversation -
-
-
How is EV a sham? As for wildcard, it *can't* be emulated due to certificate limit.
-
EV = 2 speed certs. Why? (Apart from cert auths charging more.) +
@letsencrypt -
Aside from implementation by CAs (entire CA model is broken in that sense), it's identifying a hostname vs. [...]
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.