<div dir="ltr">why not implement DNSSEC and DANE :)</div><div class="gmail_extra"><br><div class="gmail_quote">2016-06-08 22:22 GMT+02:00 Randy Bush <span dir="ltr"><<a href="mailto:randy@psg.com" target="_blank">randy@psg.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">a few folk have hit issues with purchasing ssl certs, e.g.<br>
<br>
> "Please be informed that the multi-domain SSL certificate can't be<br>
> issued for .<a href="http://gov.lr" rel="noreferrer" target="_blank">gov.lr</a> TLD.<br>
> The Liberia country is banned for the services of multi-domain SSL<br>
> certificate."<br>
<br>
the solution is not to purchase ssl certs.  thanks to a very cool<br>
community (eff, google, mozilla, ...) effort, you can get them for<br>
free.<br>
<br>
   <a href="https://letsencrypt.org/" rel="noreferrer" target="_blank">https://letsencrypt.org/</a><br>
<br>
randy<br>
<br>
_______________________________________________<br>
afnog mailing list<br>
<a href="https://www.afnog.org/mailman/listinfo/afnog" rel="noreferrer" target="_blank">https://www.afnog.org/mailman/listinfo/afnog</a><br>
</blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><p><span style="font-family:arial,helvetica,sans-serif"><b><font color="#333333">BIAOU Ramanou</font></b></span><br><font color="#9999ff">----------------------------------------------------------------------------------------------------------------<br></font><a href="http://www.biaou.net" style="font-size:x-small" target="_blank">www.biaou.net</a><br><span style="color:rgb(153,153,255)">----------------------------------------------------------------------------------------------------------------</span></p></div></div>
</div>