• Antithetical@lemmy.deedium.nl
    link
    fedilink
    English
    arrow-up
    0
    ·
    20 days ago

    I’m sorry, but have you ever needed to manage some certificates for a legacy system or something that isn’t just a simple public facing webserver?

    Automation becomes complicated very quickly. And you don’t want to give DNS mutation access to all those systems to renew with DNS-01.

    • anonymous111@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      20 days ago

      Ahh yes the: we can’t have self signed certificates for security reasons but also can’t open up the environment to the web, and we dont have our own CA server, trifecta.

      Solution: awkward, manual, certificate import process from a 3rd party vendor.