File tree Expand file tree Collapse file tree
roles/revoke_old_certificates/meta Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -19,7 +19,10 @@ argument_specs:
1919 - This role supports both plaintext private keys and sops-encrypted private keys (see
2020 O(felixfontein.acme.acme_certificate#role:main:acme_certificate_use_sops_for_key) option of the
2121 P(felixfontein.acme.acme_certificate#role) role.
22- - Make sure that you first replace all usages of the old certificates by the new ones before revokation!
22+ - B(Make sure that you first replace all usages of the old certificates by the new ones before revokation!)
23+ After recovation, clients can possibly no longer connect to services using the revoked certificates.
24+ Whether this still works or not depends on how and whether clients check revocation, so clients still
25+ working is no indication that revocation did not work.
2326 author :
2427 - Felix Fontein (@felixfontein)
2528 options :
You can’t perform that action at this time.
0 commit comments