dehydrated-io / dehydrated-io/dehydrated

Feature - if KEY_ALGO changed from algo of previously generated key - should ignore the 30 day renewal

Open
#835 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
Shell
Stars
6.2k
Forks
724
PR merge metrics
No merged PRs in 30d

Description

I had been running with defaults, updated, and unintentionally generated some EC keys. Changing to explicitly setting KEY_ALGO to rsa did not regenerate cert without a force.

It seems that if the requested configuration doesn't match the content of the most recent cert, it should be requesting a new cert regardless of expiration.

This is obviously a preference/design question, I could see argument going either way.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.