v0.13.6 - June 07, 2018 [NEVER RELEASED]

  • FIX: Renewal will no longer treat “unknown” domains as a fatal error (resulting in “Failed to group domains” emails)
    • This would happen when a user deleted a subdomain, alias domain etc, but did not re-issue their SSL certificate without these domains
    • Previously, these unknown domains would prevent renewal for any managed certificates on an account from succeeding and would email the user with an error. This was an intentional design, to ensure that the user’s original intent was being fulfilled.
    • Based on user feedback, we are changing this to ignore domains that no longer exist in any virtual host, and proceed with renewal without those domains.
    • For example,
      • If a user issued a certificate for example.org and example.com, which are the Primary Domain and an Alias Domain, respectively.
      • The user deletes the example.com Alias Domain from cPanel.
      • Previously: FleetSSL cPanel would fail to renew the certificate because the wanted domain was missing.
      • Now: FleetSSL cPanel will renew the domain without example.com, now and in future.
    • This does not affect domains that fail validation, only domains that are missing from the cPanel account entirely.
  • FIX: Fix panic that occurs a user manually modifies their NVData in an unexpected way.
  • MISC: CLI can now bypass x.509 verification errors when invoked as FLEETSSL_INSECURE_RPC=y /usr/local/bin/le-cp ...