Reply to post: Re: "How is automatic renewal a pain?"

Apple drops a bomb on long-life HTTPS certificates: Safari to snub new security certs valid for more than 13 months

Anonymous Coward
Anonymous Coward

Re: "How is automatic renewal a pain?"

As written elsewhere, those devices may not have internet connectivity at all, and may get certificates from a private CA, and you may want specific certificate features not available otherwise.

Let's encrypt was designed for different needs, and its renewal protocol is not a standard. For example Active Directory uses its own to distribute certificates. Others CA may have otjers. How many you have to code into firmware?

Moreover all we know how much support we get for 'older' devices when supplier all wish you buy new ones to fatten their revenues. Maybe Apple sits on a huge pile of gold and can replace everything once a year, others may not.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon