On Mon, May 26, 2025 at 9:25 AM Tim via users <users@xxxxxxxxxxxxxxxxxxxxxxx> wrote:
Samuel Sieb:
> > If you want a recognized certificate, you either have to buy one or you
> > can use certbot to get a free one from https://letsencrypt.org/. You
> > need to remember to renew it regularly. I think they're valid for 3
> > months at a time. That's what I use.
Patrick O'Callaghan:
> IIRC it's now down to 14 days, but certbot takes care of it
> automatically.
Why so short?
One of the concerns is bad actors storing encrypted data until new methods (quantum?) allow
them to decrypt the data. Changing keys more often multiplies the effort needed to get all the
data, which is a good thing.
George N. White III
-- _______________________________________________ users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/users@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue