I understand the reasons for limiting a certificate to only 90 days however I manage windows systems and Sonicwall routers. Every three months I need to
0. Log in to go daddy and fiddle with the DNS
- Log into my Linux server
- Renew certificate
- Export certificate
- Convert PEM to PFX
- Import Certificate to the device (harder then it sounds)
- Assign updated certificate to be used
- Log back in to Godaddy and change back to DNS
It is cool that we want to keep everything automated and once more operating systems are supported we should keep it at 90 days and have everything authenticate but for now can we make the certificates last one year please?
PS: Thank you so much for EVERYTHING you guys are doing. I think it is a wonderful initiative that will help keep the internet safer for everyone. YOU GUYS ROCK!
That’s on my own agenda too is to switch to a DNS challenge system.