hankels
Member
OP
52 VPS and counting
- Joined:
- Jun 2024
- Posts:
- 301
- From:
- Phoenix, US
SSL cert management is my sunday evening nightmare
Current split:
- Private CA (step-ca) - 21 boxes, internal services only
- Let's Encrypt DNS-01 - 18 boxes, anything that touches public
- Ignore browser warnings - 13 boxes, legacy stuff I should migrate
Considering consolidating but the migration pain is real. What are you all doing? Is anyone actually paying for certs in 2026?
seedbox, NAS, tape, and three offsite
uma
Member
99.99% or bust
- Joined:
- Jun 2024
- Posts:
- 324
- From:
- Dublin, IE
Private CA for internal (42%), Let's Encrypt DNS challenge for public-facing (38%), and a shameful 20% still on manual renewal because the owners won't give me API access to their DNS. Alert fatigue is real; I have 3 cert-related pages per week that are just "renew in 14 days."
436 days. reboot is surrender.