Hacker News new | ask | show | jobs
by hn_check 2102 days ago
You should demand a refund. Vote with your wallet.

Of course that was a bit trenchant, however you're complaining about a promise that was never made. No one ever promised that you could setup a old certbot instance and it was out of sight and mind for perpetuity. There are any number of issues that can occur, and honestly if one expected certbot to run without issue, having it automatically updating as well seems to be a base minimum.

Also worth noting that LE was early with ACMEv1, but a lot of alternatives started with ACMEv2. ACMEv2 became the common standard.

1 comments

Yes, but that hole was closed almost immediately as far as I know.
No, it was not. It's a protocol bug. The hole was "closed" by deprecating and then removing tls-sni-01.