-
Notifications
You must be signed in to change notification settings - Fork 371
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Automatic renewal when a certificate is revoked. #523
Labels
Comments
as a very quick script that runs through a server you can try;
I'd like to double check all the failure cases before I'd add something into the main code. I't may be safe to autorun getssl with a force if "Revocation Time" is in the response I suspect |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Is your feature request related to a problem? Please describe.
The problem is: https://community.letsencrypt.org/t/revoking-certain-certificates-on-march-4/114864
That is, a certificate has been revoked for whatever reason and needs renewal before it's expiry.
Describe the solution you'd like
When the enddate of the last certificate is checked (and is less than 30 days away) it can also be checked to see if it has been revoked.
The easiest way to do this seems to be to check the OCSP status:
https://serverfault.com/questions/590504/how-do-i-check-if-my-ssl-certificates-have-been-revoked
From that Serverfault page ...
The text was updated successfully, but these errors were encountered: