Conversation
Notices
-
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 12:13:51 JST Machismo sacred.harpy.faith has LE certs again. Time to speedrun fediblock etc. -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 12:30:15 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @Zerglingman bae.st does not have LE certs Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 12:31:23 JST Machismo @sjw What does it use? -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 12:39:11 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @Zerglingman I use https://zerossl.com
I can get full stack ECC certs and they have much more lenient limitations than LE.
Also I just use acme.sh and it just works because it's just a shell script and won't randomly break because you updated your version of python or something.Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 12:40:29 JST Machismo @sjw zerossl charges - a lot - for wildcard certs.
I referred to acme.sh when writing my script. 150 lines is much better than 8000.In conversation permalink -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 12:50:40 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @Zerglingman nah they're free when you order them through acme they only charge if you want to order from the web.
All of my certs are wildcard and issued from zerossl
Another plus is a web console where you can manage all of your certsIn conversation permalink Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 12:51:05 JST Machismo @sjw 🤔 citation needed In conversation permalink -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 12:52:40 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @Zerglingman their own website:
https://zerossl.com/documentation/acme/In conversation permalink Attachments
Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 12:53:44 JST Machismo @sjw Neat.
>EAB
sneablyIn conversation permalink -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 13:11:51 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @Zerglingman one of the best examples, besides full stack ECC and the performance improvement that brings, is LE will only issue 6 valid certs for a domain at any time. If you want to run a CDN then you'll have to figure out a secure way of cert distribution. With ZeroSSL they don't have such a limit so you can just configure each PoP to manage its own certs with acme.sh In conversation permalink Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Thursday, 20-Jul-2023 13:12:38 JST Machismo @sjw scp seems pretty straightforward though. In conversation permalink -
prettygood (prettygood@socially.drinkingatmy.computer)'s status on Thursday, 20-Jul-2023 13:12:42 JST prettygood @sjw @Zerglingman
>LE will only issue 6 valid certs for a domain at any time
This must not apply to subdomains. I have like, 20 subdomains with individual LE certs that I renew en masse.In conversation permalink Machismo likes this. -
Your New Kemono Waifu :verified: :cornbread_the_cat: (sjw@bae.st)'s status on Thursday, 20-Jul-2023 13:12:47 JST Your New Kemono Waifu :verified: :cornbread_the_cat: @prettygood @Zerglingman it does not In conversation permalink Machismo likes this.
-