In the coming few months we will start running some services with Let’s Encrypt server certificates. We decided to go this route to make it easier for people to join our community or contribute to our work.
A nice side effect of this move will be that we can provide these services https encrypted and redirect all unencrypted http URLs to their https counterparts.
We will continue to use our own server certificates for our CA systems and other services that are only relevant after joining our community.
We also will continue to provide our community with client and server certificates. All our services that support or require client certificates will still use those issued by our CA.
We recently implemented a web application to make it easier to get started with client certificates. The application provides a friendly and completely client side interface to generate key pairs and signing requests in your browser.