dehydrated-io / dehydrated-io/dehydrated
Feature - if KEY_ALGO changed from algo of previously generated key - should ignore the 30 day renewal
Open
- Dominant language
- Shell
- Stars
- 6.2k
- Forks
- 724
- PR merge metrics
- No merged PRs in 30d
Description
I had been running with defaults, updated, and unintentionally generated some EC keys. Changing to explicitly setting KEY_ALGO to rsa did not regenerate cert without a force.
It seems that if the requested configuration doesn't match the content of the most recent cert, it should be requesting a new cert regardless of expiration.
This is obviously a preference/design question, I could see argument going either way.
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.