Sysadmins slam Apple’s SSL/TLS cert lifespan cuts - eviltoast
  • anonymous111@lemmy.world
    link
    fedilink
    English
    arrow-up
    53
    arrow-down
    2
    ·
    17 days ago

    Ahh yes the: we can’t have self signed certificates for security reasons but also can’t open up the environment to the web, and we dont have our own CA server, trifecta.

    Solution: awkward, manual, certificate import process from a 3rd party vendor.

    • catloaf@lemm.ee
      link
      fedilink
      English
      arrow-up
      24
      ·
      17 days ago

      Even if you have an internal CA, few appliances support this kind of automation. At best, they have an API, and you get to write that automation yourself for each appliance.

      • UnsavoryMollusk@lemmy.world
        link
        fedilink
        English
        arrow-up
        11
        ·
        17 days ago

        Knew a place where, for some devices, it was only available via a web interface. It was automated via WebDriver by a sysadmin that was losing his mind.