• Antithetical@lemmy.deedium.nl
      link
      fedilink
      English
      arrow-up
      0
      ·
      20 days ago

      I’m sorry, but have you ever needed to manage some certificates for a legacy system or something that isn’t just a simple public facing webserver?

      Automation becomes complicated very quickly. And you don’t want to give DNS mutation access to all those systems to renew with DNS-01.

      • anonymous111@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        20 days ago

        Ahh yes the: we can’t have self signed certificates for security reasons but also can’t open up the environment to the web, and we dont have our own CA server, trifecta.

        Solution: awkward, manual, certificate import process from a 3rd party vendor.