#HN discussion saying Certbot doesn’t work to get #TLS certs for IP addresses, but "lego" does: lego --domains 206.189.27.68 --accept-tos --http --disable-cn run --profile shortlived #LetsEncrypt
#LetsEncrypt #news: “Short-lived and IP address certificates are now generally available from Let’s Encrypt. These certificates are valid for 160 hours, just over six days.” But unstable: “IP address certificates must be short-lived certificates.” #TLS #security
on 02026-01-16an outage of #Lets-Encrypt last week caused by #certificate-transparency; for half an hour they were issuing bad certs, 645 in total, which they had to revoke later, but 261 are still in use! #security #TLS
on 02023-06-24