Hacker News new | ask | show | jobs
by caiusdurling 1258 days ago
There's also issuance via DNS which took most of the complexity out of it for me. (Especially as the first time I went to deploy LetsEncrypt I had something like four web servers behind a LoadBalancer without the LB terminating TLS.)

I think the tooling has improved somewhat since too, although I didn't look too closely.

1 comments

issuance via DNS is awesome when it comes to LE, lets you get certs without your service being reachable from the outside