Follow-up on @letsencrypt: I am not so optimistic about it as the folks who replied to my previous inquiry. It seems pretty unstable (for example, they just broke all currently installed versions on the 9th!), and a lot of stuff doesn't even work out-of-the-box...
It takes about 15 minutes to manually deploy a 3 years certificate on a site, and that pretty much can't fail for 3 years :) Replacing that with a touch-and-go maybe-the-site-goes-down-every-90-days procedure seems like a really bad idea to me.
-
-
After years working with this I must say, sir you are wrong.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Doing task every 3 years massively opens to bit-rot of process, staff retention & lack of experience... Automate the refresh! Certbot default refresh when cert 60 days old. Ignore alerts of failure for 30 days, AND the final email from @letsencyrpt? Your site deserves to go down
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.