On Sat, Dec 12, 2015 at 7:11 PM, Constantine A. Murenin <muren...@gmail.com> wrote: > once you give in to https once, you're hooked
You're only hooked if you use HSTS. > and have to keep paying someone every year, There are at least three CAs that provide free certificates, and one of those is Let's Encrypt. > and have to keep changing the cert every year. Your certificate cycling process should be automated, and it should happen more frequently than once a year.