I don't understand the tone of aggression against ACME and their plethora of clients. I know it isn't a skill issue because of who the author is. So I can only imagine it is some sort of personal opinion that they dislike ACME as a concept or the tooling around ACME in general. We've been using LE for a while (since 2019 I think) for handful of sites, and the best nonsense client _for us_ was https://github.com/do-kn…
> I don't understand the tone of aggression against ACME and their plethora of clients. > ACME idea good, ACME implementation bad. Maybe I'm misreading but it sounds like you're on a similar page to the author. As they said at the top of the article: > Many of the existing clients are also scary code, and I was not about to run any of them on my machines. They haven't earned the right to run with privileges for my pr…
Why I no longer have an old-school cert on my HTTPS site
51–60 of 437 posts
Re: Why I no longer have an old-school cert on my HTTPS site
#52Not the main point of the article, but the author’s comments on Gandi made me wonder: What registrar do people recommend in 2025?
Re: Why I no longer have an old-school cert on my HTTPS site
#53Earlier quoted context omitted.
For god's sake, however complex ACME might be it's better than not supporting TLS
Why? The days of MITM boxes injecting content into HTTP traffic are basically over, and frankly they never were a thing in my part of the world. I see no other reason to serve content over HTTPS.
The reason you don't see many MITM boxes injecting content into HTTP anymore is because of widespread HTTPS adoption and browsers taking steps to distrust HTTP, making MITM injection a near-useless tactic.
(This rhymes with the observation that some people now perceive Y2K as overhyped fear-mongering that amounted to nothing, without understanding that immense work happened behind the scenes to avert problems.)
Re: Why I no longer have an old-school cert on my HTTPS site
#54Re: Why I no longer have an old-school cert on my HTTPS site
#55Not the main point of the article, but the author’s comments on Gandi made me wonder: What registrar do people recommend in 2025?
Re: Why I no longer have an old-school cert on my HTTPS site
#56> import JSON (something I use as little as possible) This makes me wonder what world of development she is in. Does she prefer SOAP?
Re: Why I no longer have an old-school cert on my HTTPS site
#57Not the main point of the article, but the author’s comments on Gandi made me wonder: What registrar do people recommend in 2025?
Any feedback on CF one?
Re: Why I no longer have an old-school cert on my HTTPS site
#58Not the main point of the article, but the author’s comments on Gandi made me wonder: What registrar do people recommend in 2025?
Re: Why I no longer have an old-school cert on my HTTPS site
#59Not the main point of the article, but the author’s comments on Gandi made me wonder: What registrar do people recommend in 2025?
Pork bun is my favorite.
Must be other good ones? Somewhat prefer something in the UK (but have been using Gandi so its not essential).