Automated SSL certificate management for IT teams who have better things to do. No scripts, no cron jobs. Free 90-day trial to start renewing your certificates
Let's Encrypt drops cert lifetimes to 45 days by Feb 2028, a year early.
CertKit now supports their TLS Server profile, so you can issue 45-day certs today and test your automation before the deadline.
https://t.co/5cJC2Em377
#LetsEncrypt#SSL
Managing SSL certs for clients? New: managed accounts. An MSP sets up the client's CertKit account, deploys certs and agents, then hands it over.
Client owns it. You keep audited support access.
https://t.co/5cJC2Em377
#MSP#SSL
Apple's 398-day limit exempts private CAs. Most people stopped reading there.
There's a second Apple requirement: all TLS certs, 825 days max. Safari silently rejects anything longer. No bypass, no details.
https://t.co/Z7BzXWkBf7
#PrivatePKI#PKI
PSA: You don't need a private CA for internal SSL certificates.
DNS-01 ACME challenges let you issue publicly trusted certs for servers on private subnets. The CA checks a DNS record. Your server never has to be internet-reachable.
https://t.co/YcGgsAHLBr
#PKI#SSL
Certificate compliance reviews are hard when you don't know what your automation did.
CertKit now logs every action in your certificate lifecycle. Issuances, revocations, agent approvals, domain changes. Searchable, filterable, flagged by importance.
#CertificateManagement#PKI
NEXT WEEK! I'll be joining the folks @certkitio on Tuesday, May 26 at 11:00 AM CDT for a webinar on certificate automation of #Microsoft#Windows infrastructure. Learn how to simply TLS lifecycle management and reduce operational risk with automation. Register now! #identity #security https://t.co/fyrgOiAJyr
F5 LTM. Palo Alto. Azure Key Vault. Exchange.
We shipped a deployment template library for all of them. Pick your target and push certificates to your infrastructure.
https://t.co/k8ZlWtIQtp
#CertificateManagement#PKI
Managing certificates manually? Still tracking expirations in spreadsheets? There’s a better way. Join me and the folks @certkitio on Tuesday, May 26 at 11:00 AM CDT for a free webinar where we'll show you how to automate certificate management across your Windows infrastructure. Register today! #identity #security #pki https://t.co/fyrgOiAJyr
50 SSL certificates managed manually: ~50 renewals a year today.
Same team, same certs, in 2029: 400.
That isn't a process tweak. It's a different job.
https://t.co/P2AuR7oZLq
#PKI#SSL
Your VPN, RRAS, and IIS all need certificates. None of them can run ACME. Most teams patch this with scripts and hope.
May 26, @richardhicks and @toddhgardner are doing 30 minutes on what actually works.
https://t.co/RxZ6GFCiXq
#SSL#WindowsServer
Any team that's been running Certbot long enough has accidentally built half a certificate lifecycle manager. One crisis at a time, without realizing it.
https://t.co/AhJRrjSKxa
#CertificateManagement#SysAdmin
New in CertKit: copy and link agent configs so you're not rebuilding the same setup across 50 servers. Plus monitor search/filtering and our first GDPR Data Processing Agreement.
https://t.co/wYEJ9LiJL1
#SSL#CertificateManagement
CertKit 1.9: push agent updates from the dashboard, no more server-by-server upgrades. Plus Google Trust Store as a second ACME issuer.
https://t.co/canc4Fnx0i
#SSL#CertificateManagement
One certificate management vendor used the word "trust" 17 times on their homepage. I still couldn't tell what they sell or what it costs. Apparently that's what the sales call is for.
https://t.co/IGS03KaV9X
#PKI#cybersecurity
Great news! @certkitio is now in general release! Comprehensive public #TLS certificate lifecycle management with monitoring, visibility, and reporting. Sign up today! #security#pki https://t.co/r2DJ6Cy00h
CertKit is out of beta.
600 signups. Certificates renewing in production. Features built because users demanded them.
Real product, real pricing — and 40% off forever for early adopters who act before May 31st.
https://t.co/d6bAFgA5tV
#PKI#CertificateManagement
CertKit Agent 1.8: Windows Certificate Store, Java Keystore, and RDP auto-detection.
Also: we shipped a retro MS-DOS modal on April Fools Day. It is not a joke.
https://t.co/aATq094UX9
#Windows#CertificateManagement
@NHL_mspaint@smoon_lee You should read the story. Sectigo, along with all the other CAs, opposed every attempt to shorten lifetimes.
Sectigo begrudgingly endorsed this one, because it was happening regardless. Apple (and Google) were going to drop lifetimes in their root programs regardless.