ACME
Let’s Encrypt six-day certificates and IP address certificates: what they change
Short-lived and IP-address certificates change operational tempo. They do not change the need to verify what the endpoint serves.
sslcertificates.io Editorial · Published 2026-09-21 · Fact-checked 2026-09-21 · Topic window 2026-09-01
Let’s Encrypt documents short-lived certificates (on the order of six days) and IP-address certificates. Both are real product lines. Neither is a reason to delete inventory.
Six-day leaves change the math: a missed scheduler run is not “we have two weeks.” You need a job that runs often, a webhook that pages, and a deploy path that does not wait for a human to paste PEM.
IP-address certificates change validation (you prove the address, not only a DNS name) and they do not replace hostname certificates for SaaS custom domains.
Do not tell customers that sslcertificates.io “is Let’s Encrypt short-lived.” The platform default remains a sandbox issuer; production ACME is operator-enabled. Short-lived issuance is a CA product you opt into when the account and profile exist.
Sources
Related
Automate the lifecycle this article describes
Inventory, renewals and verified deployment are product surfaces — not adjectives.