Comment by DaSHacka
2 months ago
> If LE goes down for a week you can't deploy new certs, but your existing ones will work, as you renew them a few weeks before expiry anyway
Assuming certificate expiration times remain over 7 days per certificate.
2 months ago
> If LE goes down for a week you can't deploy new certs, but your existing ones will work, as you renew them a few weeks before expiry anyway
Assuming certificate expiration times remain over 7 days per certificate.
There's no (current) plans to drop below 45 day certificates with an expected renewal with 2 weeks to go.
I agree if cert lifetimes drop towards week long then it becomes problematic. A sensible thing at that point is to ensure you can issue certificates from different CAs on different underlying stacks, in the same way you use multiple DNS servers