5

Irony - The new TLS certificate was finally issued after 10 days of waiting. The project management portal I need to upload it to crashed this afternoon. No ETA on recovery time yet.

Comments
  • 0
    What dafuq are you using to get a tls cert???? 10day? letsencrypt does it seconds!
  • 2
    Coincidence != irony

    Irony would be sysops taking so long to add the new cert that it also expired, or their cert expiring and preventing them from adding any new ones.
  • 1
    @magicMirror that is because letsencrypt doesn't do EV.

    Depending on the infra setting up letsencrypt might not be an option or take some time to set up properly. We have a CDN that does not support it on one end and in our kubernetes cluster we run certmanager with multiple dns01 checks (multiple dns providers). Adding domains is easy now but setting it up took quite some time. In an overworked IT department 10 days is quite fast delivery.
  • 1
    @hjk101 First time I read about the EV, OV variants. TIL.

    Yes - in this case 10 days is indeed fast!
  • 2
    @magicMirror Yup. EV plus a recent physical move added confusion to every step. Not to mention, our call center is voicemail/callback only right now so the phone number verification process is even harder since the automated systems don’t know how to leave a damn voicemail.
Add Comment