My theory is that the 90-day time limit on Let's Encrypt SSL certs was an intentional anti-feature to make the whole system acceptable to the commercial cert providers who could use the convenience of a year-long or multi-year cert as a selling point.
Conversation
Notices
-
Embed this notice
Evan Prodromou (evan@cosocial.ca)'s status on Monday, 12-May-2025 08:54:07 JST Evan Prodromou
-
Embed this notice
Noisytoot (noisytoot@berkeley.edu.pl)'s status on Monday, 12-May-2025 11:01:54 JST Noisytoot
@evan I think the purpose was to force people to set up automation. Setting up automation is harder than just installing a certificate, but you only have to do it once instead of having to do it yearly (which you may forget). In the long run it's more convenient.
-
Embed this notice