5 ms·
I am looking forward to finally using DNS-PERSIST-01 for validation. No more dynamic DNS updates, DNS credentials or forwarding necessary.
by raquuk 2mo ago
I am looking forward to finally using DNS-PERSIST-01 for validation. No more dynamic DNS updates, DNS credentials or forwarding necessary.
- Thom2000 2mo agoSadly most tools still doesn't support it: https://github.com/cert-manager/cert-manager/issues/8373#issuecomment-4344858213 https://github.com/cert-manager/cert-manager/issues/8373#iss... And then the issue is protecting the private key of the issuer and monitoring certificates (it's a good idea to do that anyway).
- zeeZ 2mo agoOne of the draft authors is already working on a cert-manager implementation. I'm optimistic it'll make it into cert-manager once the spec is ready and CAs actually start to implement it.