Let’s Encrypt is singlehandedly holding up the entire internet PKI

Reply to this note

Please Login to reply.

Discussion

Yup. Let's not have that go down.

Yeah. I LetsEncrypt all my domains.

Wait, are they losing USAID funding?

yes, too much centralization in free SSL

I like ZeroSSL but its 90 day renewals for free domain certs

CACert is another option but root certificate authority recognition is limited

This is a threat to our democracy!

they don't allow wildcards and ratelimit subdomain certificates, that's why realy.lol has a sectigo certificate

fucking retarded monopoly enforced by google and mozilla

or maybe it's mleku.dev i go the cert for... haha... the realy one just kinda took on a life of its own

they do? I think

since when? and no, they have never given out wildcards

they do, but only with dns challenge not http01

lol, what

ok, i'll be getting one of those lined up, i never knew about it before

yes it requires DNS verification