Get the latest tech news

6-Day and IP Address Certificates Are Generally Available


Short-lived and IP address certificates are now generally available from Let’s Encrypt. These certificates are valid for 160 hours, just over six days. In order to get a short-lived certificate subscribers simply need to select the ‘shortlived’ certificate profile in their ACME client. Short-lived certificates improve security by requiring more frequent validation and reducing reliance on unreliable revocation mechanisms. If a certificate’s private key is exposed or compromised, revocation has historically been the way to mitigate damage prior to the certificate’s expiration. Unfortunately, revocation is an unreliable system so many relying parties continue to be vulnerable until the certificate expires, a period as long as 90 days. With short-lived certificates that vulnerability window is greatly reduced.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Day

Day

Photo of address certificates

address certificates

Related news:

News photo

Cisco finally fixes AsyncOS zero-day exploited since November

News photo

I tested a pair of smart glasses that truly last all day, but the trade-offs weren't worth it

News photo

Day Fifteen of Iran's Nationwide Protests: Sharp Rise in Human Casualties