@Peter
I wonder how many active certificates will be revoked.
It's probably very close to the ~2 million non-duplicate valid certificate count. Their certs are valid for just 90 days, and they say the buggy code was deployed on 2019-07-25. I've have about a dozen certs issued by them, 3 were affected, 1 is a dup. The biggest hitch in the process were the errors introduced by their Multi-Perspective Validation process. They use Amazon as their main cloud provider, and my servers have been attacked by those IP ranges too often not to have them widely blocked at the firewall. That resulted in errors when I attempted to replace the bad certs, which resulted in a rate-limiting block on top of it! I eventually did get them replaced (after a bit of a wait and temporarily whitelisting a large chunk of AWS IPs), but LE really should be more mindful/helpful when it comes to providing security services to anyone who is serious about security. 2c4eebcd1ea97c8edb19124d39027cc4b2b7cc16983553a2b8a5c5d96df0686a