Föderation EN Mo 12.05.2025 01:53:50 My theory is that the 90-day time limit on Let's Encrypt SSL certs was an intentional anti-feature to make the whole system acceptable to the commercial cert providers who could use the convenience of a year-long or multi-year cert as a selling point. |
Föderation EN Mo 12.05.2025 02:00:02 @evan not necessarily disagreeing, but short lived certs (they have 6 day ones now!) basically render most of the hassle of cert revocation pointless - by the time you discover something happened and that you should revoke the cert, it has only short period of validity left, so either you don't have to bother with it at all, or you need to keep it on the list only for short time. |