Ask HN: How are you preparing for upcoming short-lived SSL renewals?

4 froil 4 9/10/2025, 4:31:07 PM
Any new tools or services or saas you are exploring? Every company have myraid of requirements and stuff. Anyone building new solution?

Comments (4)

comprev · 12m ago
Not building anything but I'm helping other teams work on their automation to improve rotation processes.

A surprising number of Ops colleagues have almost zero exposure to IaC and the short-lived certificates on the horizon has been the necessary catalyst to change this.

galaxy_gas · 56m ago
Already using acme
kbrannigan · 3h ago
Any more info regarding that. What does that mean?
galaxy_gas · 55m ago
As of March 15, 2026, the maximum lifetime for a TLS certificate will be 200 days.

As of March 15, 2027, the maximum lifetime for a TLS certificate will be 100 days.

As of March 15, 2029, the maximum lifetime for a TLS certificate will be 47 days.

As of March 15, 2026, the maximum period during which domain validation information may be reused is 200 days.

As of March 15, 2027, the maximum period during which domain validation information may be reused is 100 days.

As of March 15, 2029, the maximum period during which domain validation information may be reused is 10 days.

https://groups.google.com/a/groups.cabforum.org/g/servercert...