Large file sharing to, from and within mainland China
- 
 @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert If you have a MS network, you could always use an internal CA, but that would be my last choice. Larger places will invoice or accept bank transfers, etc. You have options. You will not get the service (certificate) until the invoice is paid, but you can go that route. I know GoDaddy accepts banks transfers and will do invoice, but as it is not typical, you will likely have to make personal contact to get things setup right. 
- 
 Even without an MS network, you can make a free CA with Linux, too. 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. However, for internal, when do you need to pay for a CA? That he mentioned paying, seems like external is the issue. If it is internal, just issue your own certs and trust them. It's only for external that paying would even come up, right? 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? [edit: I see, for internal, a bit more of a pain but there are ways for that, too.] Replying to the edit. Yes, you can get around it, but it is not easy and depending on what type of servers you have running internally, it gets even harder. /me glares at IIS. 
- 
 In case it is needed, here is a guide to doing it internally for free. 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. Normal people reply to entire post context, which even if not directly quoted, does generally involve the posts preseeding the one being replied to. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. Normal people reply to entire post context, which even if not directly quoted, does generally involve the posts preseeding the one being replied to. There was no quote, I didn't know that he was implying more than he said. He asked how to get SSL Certs without a CC. 
- 
 I know my options, either Windows server acting as CA or OpenSSL in Linux, to be honest both routes was difficult to setup and requires a VM to be running at all times, to be the point I said screw it let them click the Advanced button and proceed to the site. Cause encryption is occurring, with the self created ssl key + cert. And our infrastructure is bit limited to be honest, so each VM has to be really needed to open one. And the theoretical issue of 0.00001% of someone hijacking the server and do Man in the middle attack by routing to his SSL keys + cert is out of the park, if there is someone there with I.T skills I will pay him to help me. 


