Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Just use any of the dozens of tools to manage this automatically through cron. You don't even have to restart services, just reload them.


There are lots of organizations where certificates are "managed" by a recurring Outlook meeting on a 2-year cycle, where you hope that employee is still around. Moving to an automated system like certbot (which I use and love) with proper logging and email alerts is the right way to go! But that can require a lot of communication between the server teams, web teams, IT teams, etc. There are plenty of places where it seems more convenient (true or not) to just deal with $100 every couple of years than spend the time to implement new processes.


Surely it just needs the server team to install certbot (or similar), and configure it to register the domains currently in use.

How exactly do the other people need to be involved - there is no purchasing/responding to email for proof/etc required.


You can of course always choose to shoot yourself in the foot.


There is no technical solution to that problem.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: