News
Google and Apple to Shorten Maximum TLS Certificate Lifespans to Enhance Security
<h1>Google and Apple to Shorten Maximum TLS Certificate Lifespans to Enhance Securityh1> <p> Google and Apple have announced their intention to reduce the maximum TLS certificate lifespans to <strong>90 daysstrong> and <strong>47 daysstrong>, respectively. p> <p> While this may present challenges for some businesses, developers, and IT teams, shorter certificate lifecycles are a strategic move to address specific risks and enhance overall security: p> <ul> <li>Mitigating risks from private key compromiseli> <li>Aligning with technological advancementsli> <li>Providing agile defenses for organizationsli> <li>Reducing vulnerabilitiesli> <li>Adapting to a rapidly changing digital environmentli> ul> <h2>7 Key Reasons for Shorter Certificate Lifespansh2> <ol> <li>Reducing the attack window in the event of a private key compromiseli> <li>Minimizing the impact of misissued certificatesli> <li>Ensuring closer alignment of certificate ownership and domain controlli> <li>Boosting crypto-agility and post-quantum readinessli> <li>Eliminating reliance on OCSP and CRL mechanismsli> <li>Mitigating issues caused by failed mandatory revocationsli> <li>Encouraging the adoption of automationli> ol> <p> These changes aim to prepare organizations for future challenges while strengthening security in an ever-evolving digital landscape. p>
Open ticket
Submit a support ticket