skip to main content.

posts for 2018.

this year, we travelled to the nordseeküste for another time. we had a very nice time, and fortunately, it was much cooler than inland. just around 25—30 degrees instead of 30—40 degrees... we enjoyed the high water a lot (it started in the morning when we arrived, and ended in the late afternoon when we left ­— perfect!), but also the wadden sea.

we were also able to see this year's total lunar eclipse, though it took some time until it was possible to see the darkened moon through the clouds.

we visited dat otto huus, a museum dedicated to east frisian comedian otto waalkes.

afterwards, we continued to norden, where we visited the seehundstation norddeich, where abandoned harbor seal pups are raised until they can be released back into the wild.

one week ago, while we were in vacation, one of our last two remaining cats was killed by a car, apparently while crossing a street.

rest in peace, tetris teero!

this year, let's encrypt added two great features:

  1. they enabled the acme v2 protocol, and allow to obtain wildcard certificates through this.

  2. they improved their certificate transparency support by including signed certificate timestamp (sct) records in the certificates. chrome will, for example, require scts from april 2018 on.

i've already tried out both wildcard certificates and scts, and so far they work flawlessly! i've been using the acme v2 support in the letsencrypt module of ansible 2.5 (with a bugfix), into which i invested quite some work.