• Onno (VK6FLAB)
    link
    fedilink
    English
    5914 hours ago

    I’m sorry, but has no-one heard of https://letsencrypt.org that issues certificates via API for free?

    I would not be surprised if certificates at some point will be issued for each session.

    • @RegalPotoo@lemmy.world
      link
      fedilink
      English
      53 hours ago

      It’s not the issuance that’s the headache, it’s the installation. There are more things that need valid certs than just webservers

        • @wizardbeard@lemmy.dbzer0.com
          link
          fedilink
          English
          61 hour ago

          Any number of numerous appliances and hideously malformed business systems that don’t have ways to automate cert changes.

          Not everyone gets to work in their simple little world of standards-following lab servers.

    • Antithetical
      link
      fedilink
      English
      6213 hours ago

      I’m sorry, but have you ever needed to manage some certificates for a legacy system or something that isn’t just a simple public facing webserver?

      Automation becomes complicated very quickly. And you don’t want to give DNS mutation access to all those systems to renew with DNS-01.