adam20
Member
OP
Ex-Abuse Desk
- Joined:
- Jul 2024
- Posts:
- 149
- From:
- Los Angeles, US
Still paying CloudCone $89/year for a wildcard. The ticket said "renewal processed" last month and they sent me a cert with SANs for *.example and example.com but the intermediate chain was missing. Had to open another ticket.
Been hearing about Let's Encrypt forever but the 90-day thing seems annoying. What ACME clients are people actually using in production? Any reason not to just automate the whole thing and forget paid certs exist?
The ticket said my account was "flagged for manual review due to certificate volume" when I asked for three wildcards. I have three subdomains. Dry humor is how I cope.
reported. resolved. repeat.
haroldgsm
Member
Grumpy Old Sysadmin
- Joined:
- May 2024
- Posts:
- 329
- From:
- Ohio, US
Any reason not to just automate
Kids these days want to know if free is "good enough." Twenty years in this business says the certificate is never the problem. The liability is.
Let's Encrypt won't indemnify you. When your e-commerce site goes down because their OCSP responder hiccuped, you have no one to sue. No SLA, no phone number, no ticket to escalate at 2am. Mark my words, that $89 is cheaper than one hour of lawyer time.
The enterprises I consult still pay KnownHost or Leaseweb for exactly this reason. Not for the crypto. For the paper trail when something breaks.
IPv4, IRC, and irssi — fight me