TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

WebPKI – Introduce Schedule of Reducing Validity (Of TLS Server Certificates)

7 pointsby nickf7 months ago

2 comments

westurner7 months ago
Letsencrypt wildcard certs are valid for 30 days, and regular certs are valid for 90 days but they recommend renewing them after 60 days.<p>Cert validity intervals directly affect the storage and bandwidth requirements for CT logs, which should be replicated.<p>Does anyone serve the CT Certificate Transparency logs for checking by browsers?
nickf7 months ago
A phased approach to reducing the validity of TLS server certificates over the next two or three years, ending at a 45-day certificate lifetime by early 2027.