Comment on Anyone using 6-day certs yet?

haroldfinch@feddit.nl ⁨4⁩ ⁨days⁩ ago

Thabknyou for sharing. I had missed the announcement, so pleased to know the option is available.

I have fully automated the creation and renewal of my certs and have just short of 50 certs that I manage in total. Every single one automated using NixOS / ACME / lego.

Technically I could easily implement this, just have to switch my config.

Honest question, are there any particular security benefits to this (especially for a home lab)?

I can understand the short lived time span further reduces risk of compromise, yet the existing time span is already “much shorter than traditional certificates”. Does it have a substantial impact on our security posture?

original
Sort:hotnewtop