in reply to This site is not secure continues

Problem Summary:

  1. 209.197.123.153 is configured with a certificate issued for dns entries matching *.pairsite.com
  2. perlmonks.(com|net|org) have an A record pointing to 209.197.123.153
As a consequence, whenever one is directed to the pairsite mirror, one gets a security warning, because the subject alternative name in the certificate, does not match the dns name used for contacting the host.

Possible solutions:

  1. configure the pairsite mirror to use the letsencrypt certificate
  2. remove 209.197.123.153 for the dns entries where its certificate does not match (perlmonks.com,perlmonks.net,perlmonks.org,...)

I love this site. I greatly appreciate the effort put into this site by the volunteer administrators. This problem however annoys me quite a bit. I want to see it fixed. I therefore volunteer to fix it. This would however require trusting me with the credentials required for the changes. I am offering my time, in case this is the limiting factor. If anybody else fixes it, i am also very happy. As an alternative solution i offer a beer to the person who fixes it ;).

Details:

rminner@hamster530:~$ date Mi 27. Jun 23:08:54 CEST 2018 rminner@hamster530:~$ for i in `dig +short perlmonks.org`; do echo -en + "$i: \n\t" ; echo "Q" | openssl s_client -connect $i:443 2> /dev/nul +l| openssl x509 -text -noout | sed -n '/X509v3 Subject Alternative N +ame/{n;s/^\s*//;s/, /\n\t/g;p;}'; done 216.92.34.251: DNS:css.perlmonks.com DNS:css.perlmonks.net DNS:css.perlmonks.org DNS:perlmonks.com DNS:perlmonks.net DNS:perlmonks.org DNS:www.perlmonks.com DNS:www.perlmonks.net DNS:www.perlmonks.org 66.39.54.27: DNS:css.perlmonks.com DNS:css.perlmonks.net DNS:css.perlmonks.org DNS:perlmonks.com DNS:perlmonks.net DNS:perlmonks.org DNS:www.perlmonks.com DNS:www.perlmonks.net DNS:www.perlmonks.org 209.197.123.153: DNS:*.pairsite.com DNS:pairsite.com rminner@hamster530:~$