[jitsi-dev] jit.si SSL cert expiration.


#1

Heya,

I am sure I cannot be the only one who has noticed this, no?

-- CUT --

_*Testing server defaults (Server Hello) *_

*TLS extensions (standard) *"server name/#0" "renegotiation info/#65281" "session ticket/#35" "heartbeat/#15"
*Session Tickets RFC 5077 *300 seconds *(PFS requires session ticket keys to be rotated <= daily)*
*SSL Session ID support *yes
*TLS clock skew* random values, no fingerprinting possible
*Signature Algorithm *SHA256 with RSA
*Server key size *RSA 4096 bits
*Fingerprint / Serial *SHA1 26C631B7CA3C2B8383DBE13226010443622C13BB / 0493616A1F69D4
                              SHA256 AACA5FACEE2D2DDC4A25C3D15599F9BF35CEE652721C481D339DB815B68D7E6B
*Common Name (CN) *"jit.si"
*subjectAltName (SAN) *"jit.si" "www.jit.si"
*Issuer *"Go Daddy Secure Certificate Authority - G2" ("GoDaddy.com, Inc." from "US")
*Trust (hostname) *Ok via SAN and CN (works w/o SNI)
*Chain of trust* *NOT ok* (expired)
*EV cert* (experimental) no
*Certificate Expiration **expired!* (2014-11-07 14:37 --> 2016-08-21 14:03 +0100)
*# of certificates provided* 4
*Certificate Revocation List *http://crl.godaddy.com/gdig2s1-87.crl
*OCSP URI *http://ocsp.godaddy.com/
*OCSP stapling **--*

-- CUT --

Why are you still using GoDaddy? Can't someone set up a letsencrypt cert
instead?

Curious...

···

--

Don Alexander

It's a tough job, but some mug has to do it...

RooSoft Ltd