What happens when a CN or Alternative Name in a SAN or UCC ssl certificate no longer resolves to the server?
Are there any problems that can arise from this?
The question is general but the specific environment I'm interested in is Linux for web hosting using LetsEncrypt certificates.
Does it affect the results of OCSP requests?
Does the fact that one or more names don't resolve to the server any more affect the remaining names that do in any way? Can the certificate be renewed?