I'd rather have some expired cert than http
I saw once my ISP injecting javascript ads into http traffic and the horror is with me forever
On the one hand, I agree with you given that state of the world.
On the other hand, that state of the world shouldn't exist. It's incredible to me that it's not illegal.
That's when you connect the VPN...
I thought that was a one time thing in a 3rd world country blown out of proportion into myth status.
Would you mind sharing what ISP it was and what time period this was in?
Agree strongly. An expired cert is better than no cert.
Also would argue maintenance is only as complicated as you make it for yourself. Countless people keep patched, secure, https web servers running with minimal effort. If its somehow effort, introspect some on why you are somehow making so much work for yourself.