Skip to content

Conversation

osirisinferi
Copy link

Don't ever, EVER bluntly add --renew-by-default to cronjobs! Certbot should be run twice a day and Certbot itself should determine if a certificate is up for renewal. There is absolutely no need to force this with a command line option. Also, Let's Encrypt recommends to renew only after 60 days, NOT every month.

Don't ever, EVER bluntly add `--renew-by-default` to cronjobs! Certbot should be run twice a day and Certbot itself should determine if a certificate is up for renewal. There is absolutely no need to force this with a command line option. Also, Let's Encrypt recommends to renew only after 60 days, NOT every month.
@jit-ci
Copy link

jit-ci bot commented Jun 2, 2022

Hi, I’m Jit, a friendly security platform designed to help developers build secure applications from day zero with an MVS (Minimal viable security) mindset.

All security workflows are defined in a centralized repository named .jit.
In case there are security findings, they will be communicated to you as a comment inside the PR.

Hope you’ll enjoy using Jit.

Questions? Comments? Want to learn more? Get in touch with us.

kdeldycke added a commit to kdeldycke/kevin-deldycke-blog that referenced this pull request Feb 19, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant