Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Scaling the Let's Encrypt rate limits to prepare for a billion active TLS cert (letsencrypt.org)
13 points by fanf2 5 months ago | hide | past | favorite | 2 comments


> Conveniently, the difference between the TAT and the current time can then be returned to the subscriber in a Retry-After header, informing their client exactly how long to wait before trying again.

I hope they know to add in a small amount of anti-synchronization randomness to the exactly-calculated “retry-after” delay.





Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: