It seems that https://letsencrypt.org is a new CA that we could use to provide certificates for domains. Two of the advertised features seem interesting: - automatic renewal - free of charge It is sponsored by Mozilla and the EFF (and others) so it seems legit. It seems too good to be true, so I wonder whether there is a catch.
-erik
On Tue, Oct 20, 2015 at 3:35 PM, Erik Schnetter schnetter@gmail.com wrote:
It seems that https://letsencrypt.org is a new CA that we could use to provide certificates for domains. Two of the advertised features seem interesting:
- automatic renewal
- free of charge
It is sponsored by Mozilla and the EFF (and others) so it seems legit. It seems too good to be true, so I wonder whether there is a catch.
I agree, it sounds very promising and have also considered using it for, e.g. the Jenkins build server. From the FAQs, it looks like November 16, 2015 is the official launch date, so it would be prudent to wait until at least then before switching over.
Hello all,
I agree, it sounds very promising and have also considered using it for, e.g. the Jenkins build server. From the FAQs, it looks like November 16, 2015 is the official launch date, so it would be prudent to wait until at least then before switching over.
we should certainly try this out. We should also before we commit using them on the ET sites make sure that all machines and OS in question (even old ones!) recognize the certificates. This unfortunately has been the problem with LSU's certificate authority much more than occasional glitches at renewal time.
Yours, Roland
users@lists.einsteintoolkit.org