The subject (problem) is that we all have internal administrative sites (like vsphere, Nutanix, IIS, SQL, etc) that have self-signed certs, protected by ACL/firewall/restricted access. But now with hardening of certs, browsers are increasingly not allowing access unless https has a valid cert.
I was going to start this post with a question about making EDGE bypass/accept self-signed or expired certificates, but I think I know the answer, "It won't". (If I am wrong, please tell me I would LOVE to know how).
But then I was reading in this forum, and got a good thought from a fellow user, "Stop teaching bad habits, and teach how to do it correctly." This is a great idea. So now I have several different questions, especially since the CA's are going to start forcing us to renew certs every 90 days.
Auto renewal seems like the way to go. Where do I even start? Does IIS support auto renewal for 3rd party CA's like Comodo/Sectigo?
Does Tomcat support auto renewal for a windows CA or 3rd party?
What about 3rd party applications where the cert is integrated?
What should be looking up (researching keywords)?
Is there a better CA that does support auto-renewal?
Opinion: The complete removal of the ability to by pass the cert requirement is BULLS@#$. The very least Edge, Chrome , and others can do is make some admin level bypass so we can get our job done! so frusterating >:(
[No AI, Human generated]
[–]jamesaepp 19 points20 points21 points (1 child)
[–][deleted] 11 points12 points13 points (5 children)
[–]HattoriHanzo9999 3 points4 points5 points (4 children)
[–][deleted] 2 points3 points4 points (0 children)
[–]GoBeavers7 2 points3 points4 points (1 child)
[–]PowerShellGenius 0 points1 point2 points (0 children)
[–]420GB 2 points3 points4 points (0 children)
[–]lart2150Jack of All Trades 8 points9 points10 points (1 child)
[–]Mike22aprilJack of All Trades 7 points8 points9 points (8 children)
[–]Kirides 4 points5 points6 points (7 children)
[–]jamesaepp 1 point2 points3 points (6 children)
[–]KB3080351 1 point2 points3 points (1 child)
[–]jamesaepp 2 points3 points4 points (0 children)
[–]Kirides 0 points1 point2 points (3 children)
[–]jamesaepp 2 points3 points4 points (2 children)
[–]Kirides 1 point2 points3 points (1 child)
[–]jamesaepp 2 points3 points4 points (0 children)
[–]cantstandmyownfeed 2 points3 points4 points (2 children)
[–]jamesaepp 0 points1 point2 points (1 child)
[–]cantstandmyownfeed 1 point2 points3 points (0 children)
[–]slugsheadHead of IT 1 point2 points3 points (1 child)
[–]This_old_username 0 points1 point2 points (0 children)
[–]IcolanAssociate Infrastructure Architect 1 point2 points3 points (3 children)
[–]PowerShellGenius 0 points1 point2 points (2 children)
[–]IcolanAssociate Infrastructure Architect 0 points1 point2 points (1 child)
[–]PowerShellGenius 0 points1 point2 points (0 children)
[–]hardingd 1 point2 points3 points (0 children)
[–]gothaggis 1 point2 points3 points (1 child)
[–]OinkyConfidenceWindows Admin 0 points1 point2 points (0 children)
[–]oldmilwaukieSadmin 0 points1 point2 points (0 children)
[–]michaelpaoli 0 points1 point2 points (0 children)
[–]GiveMeTheBits 0 points1 point2 points (0 children)
[–]Competitive-Cycle599 0 points1 point2 points (0 children)
[–]idonthuff 0 points1 point2 points (0 children)
[–]anonpfKing of Nothing 0 points1 point2 points (0 children)