Auto generate Lets Encrypt certificates

NTS
NTS Posts: 3  Freshman Member
Fifth Anniversary
edited July 2 in Security Ideas

Could a feature be added to USG/ATPs where you can use a lets encrypt certificate for say SSLVPNs, and set it too auto renew every 90 days? So other vendors already support this.

4 votes

Active · Last Updated

Comments

  • Zulgrib
    Zulgrib Posts: 27  Freshman Member
    First Comment Friend Collector Third Anniversary

    If the certificate hash changes all the time you cannot verify in a reliable way if there's a mitm attack. The correct way is to create your PKI.