Hacker News new | ask | show | jobs
by 8organicbits 29 days ago
Cloudflare origin CA is a private CA, so the CABF doesn't apply.
1 comments

Yes.. exactly.. you can't issue a 15y TLS (not SSL) cert today.. not in a usable way. If cloudflare stops proxying you, your cert is worth nothing (accepted by no one).

You can create your own without the use of cloudflare.. you can set it to a 100y expiry if you feel like it.