Skip to content

Conversation

@mendsley
Copy link
Member

Properly renews certificates at the recommended 2/3 validity period instead of relying on 90d certificate validity.

While this is ahead of the change from 90d > 64d > 45d certificates for the default profile, this change also avoids unnecessary renewals for exitsing short-lived 6d certificates.

See-also: https://letsencrypt.org/2025/12/02/from-90-to-45

Fixes: #12

Properly renews certificates at the recommended 2/3 validity period
instead of relying on 90d certificate validity.

While this is ahead of the change from 90d > 64d > 45d certificates for
the default profile, this change also avoids unnecessary renewals for
exitsing short-lived 6d certificates.

See-also: https://letsencrypt.org/2025/12/02/from-90-to-45

Fixes: #12
@mendsley mendsley added this pull request to the merge queue Dec 14, 2025
Merged via the queue into main with commit 1452fa1 Dec 14, 2025
2 checks passed
@mendsley mendsley deleted the mendsley/dynamic_cert_renewal_time branch December 14, 2025 23:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

The plugin uses a fixed 30 days left for cert renewal

2 participants