Hacker News new | ask | show | jobs
by Diti 3539 days ago
I am glad this is happening. I have lost all trust in StartCom when they blatantly ignored the issues surrounding Heartbleed, refusing to renew certificates, despite every other CA doing so.

I hope their learn their lesson, and try to be more honest in the future!

1 comments

Small nitpick: StartCom refused to revoke certificates at the time, not renew them.
StartCom refused to revoke certificates for free

Bad move

They wouldn't let you renew them either unless you revoked first...

Revocation cost $59 at the time. Was painful.

Certificates are very expensive with most providers, $59 is a bargain depending on your needs. The sole reason I've been staying with StartSSL is I've SSL'd all my subdomains (it's awesome for Postgres, for example), and a wildcard certificate costs $300 to $500 at all other shops.

By the way, anyone knows a cheaper wildcard certificate provider?

I've used Gandi just about my entire life for DNS & Certs. It was probably their tagline that sold me.

Anyhoo, they do wildcard for starting at 120,00 € excl. VAT/year.

https://www.gandi.net/

I had over 100+ domains with StartSSL's free service. They worked for my needs. Revocation cost a lot of money for something that was not my fault.
AWS offers free certificates, including free wildcard ones. I've only used them with other AWS services so I'm not sure how easy it would be to use one of them outside the AWS ecosystem.