If you generate short lived certificates via an automated process/service then you don’t really need to manage a revocation list as they will have expired in short order.
But then you can't log in if your box goes offline for any reason.
But then you can't log in if your box goes offline for any reason.