Certs get cut in half in the next couple of years.
Comment on Anyone using 6-day certs yet?
tburkhol@slrpnk.net 1 day ago
I’m happy with 90 day certs for homelab stuff: I’m not worried about anyone MITMing my network. I figure the short lived certs are more important for people who provide services with a significant external user-base, or who process sensitive transactions.
I have my certbot set to check every 12 hours and renew at 60 days. Renewing every 3 days would be 20x more load on Let’s Encrypt systems, and that feels like abuse of a free service for my use case.
Auli@lemmy.ca 19 hours ago
stratself@lemdro.id 1 day ago
I think they encourage that increased frequency by offering shortlived certs to begin with…
Although do note that normal certificates will reduce its lifetime to 45 days over the next few years