In article <[email protected]> you write:
>Note that you can use certbot to submit a CSR with multiple alternative 
>names and if desired re-uses the private key to reduce DANE rollover 
>issues. That's what I do with Let's Encrypt, only change the private key 
>once a year so DANE is easier.

Yes, I know.  The chances of verifying 80 names in a row without one
of them glitching does not seem high.  I'd probably get rate limited
first.  The usual LE rollover for a single cert starts quite a long
time before the old cert expires so if it fails, you can try again
tomorrow.

R's,
John

PS: I lied, it's actually more than 80.
-- 
Regards,
John Levine, [email protected], Primary Perpetrator of "The Internet for Dummies",
Please consider the environment before reading this e-mail. https://jl.ly

_______________________________________________
Uta mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/uta

Reply via email to