> If you're one of the few early adopters of short-lived (6-day) certs you should renew at 3 days
Apparently certificates are becoming OCSP-only with a TTL.