how do you handle ssl cert rotation for internal services

Posted by Sroni4967@reddit | sysadmin | View on Reddit | 12 comments

Currently using let's encrypt with certbot for everything but the 90 day renewal keeps breaking random internal apps. Thinking about switching to an internal CA but not sure if the overhead is worth it for \~20 services.