!MthpOIxqJhTgrMNxDS:nixos.org

NixOS ACME / LetsEncrypt

121 Members
Another day, another cert renewal51 Servers

Load older messages


SenderMessageTime
26 Mar 2026
@hexa:lossy.networkhexa ok, so basically you create an account and tie the _validation-persist record to the account url 23:48:01
27 Mar 2026
@sandro:supersandro.deSandro 🐧well, for running a local Bind...00:28:37
@sandro:supersandro.deSandro 🐧add a shell script to print out the dns record that people need to set?00:28:56
@sandro:supersandro.deSandro 🐧or put it into a file like mailserver, sothat it is easy to find and copy?00:29:10
28 Mar 2026
@m1cr0man:m1cr0man.comm1cr0manhuge16:21:13
2 Apr 2026
@hexa:lossy.networkhexaright, this can simpliy the acme module a lot14:44:59
@hexa:lossy.networkhexaI have an idea how to keep it complicated though: delaying activation of a new certificate for time/condition14:45:45
@hexa:lossy.networkhexathis could allow for proper DANE support14:46:09
@hexa:lossy.networkhexa * 15:02:36
10 Apr 2026
@emilazy:matrix.orgemilyhttps://letsencrypt.org/2026/04/10/test-sites.html can we deploy this for everyone on April 1?19:00:42
@arianvp:matrix.orgArianAll the revoked certs work fine for me on chrome for android20:51:09
@arianvp:matrix.orgArianI guess it's because chrome only pushes revoked certs through updates?20:51:53
@thinkchaos:matrix.orgThinkChaos

Yeah only Firefox has good (i.e. functional) revocation support ATM thanks to the mentioned CRLite.
This blog post explains how it works nicely: https://hacks.mozilla.org/2025/08/crlite-fast-private-and-comprehensive-certificate-revocation-checking-in-firefox/

You should consider using FF on Android just for extensions: it supports standard WebExts like uBlock Origin!

23:02:19
11 Apr 2026
@rasmata:matrix.org@rasmata:matrix.org joined the room.19:17:38
@rasmata:matrix.org@rasmata:matrix.org left the room.19:17:40
12 Apr 2026
@leona:leona.isleona changed their profile picture.12:15:37
13 Apr 2026
@alesya-h:nixos.devAlesya changed their display name from Alesya Huzik to Alesya.01:44:34
14 Apr 2026
@lukas:landgraf.moeLukas joined the room.01:53:57
23 Apr 2026
@rasmata:matrix.org@rasmata:matrix.org joined the room.19:20:09
@rasmata:matrix.org@rasmata:matrix.org left the room.19:20:13
27 Apr 2026
@ninja:worldethicaldataforum.orgNinja joined the room.14:32:13
2 May 2026
@tom:dragar.deTom changed their profile picture.18:40:56
8 May 2026
@hexa:lossy.networkhexahttps://letsencrypt.status.io/19:44:49
@hexa:lossy.networkhexa

We have been made aware of a potential incident and are shutting down all issuance.

19:45:07
@k900:0upti.meK900Wew19:45:25
@hexa:lossy.networkhexahttps://bugzilla.mozilla.org/show_bug.cgi?id=203835121:46:48
9 May 2026
@m1cr0man:m1cr0man.comm1cr0manDoes this actually affect us? Afaik you can't issue a subordinate with lego01:31:06
@hexa:lossy.networkhexait prevented me from renewing11:32:12
12 May 2026
@artify:artify.zoneRichard Tichý joined the room.11:24:50
13 May 2026
@hexa:lossy.networkhexahttps://github.com/go-acme/lego/releases/tag/v5.0.313:50:49

Show newer messages


Back to Room ListRoom Version: 6