Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@numinit
Copy link
Owner

@numinit numinit commented Oct 28, 2025

This is a little safer and less likely to create weird situations involving multiple keys bound to the same ID.

If destroyOld is set to true, the old key will be destroyed upon
renewal.
For tokens that are removable (e.g. a Yubikey) we may not want to fail
the systemd service if the token is missing. If we fail to probe the
token, don't fetch the certificate but also don't fail if softFail is
set.
@numinit numinit merged commit 9c74438 into master Oct 28, 2025
@numinit numinit deleted the delete-old-key branch October 28, 2025 06:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants