Let's Encrypt宣布计划大幅缩短其免费SSL/TLS证书的有效期1。从2027年2月10日起,证书有效期将从现有的90天减少至64天1。
为了平稳过渡,Let's Encrypt将从2026年10月14日开始进行测试阶段,期间用户可选择参与64天证书的试用1。支持ARI(ACME Renewal Information)的现代ACME客户端将能够无缝适配新的证书有效期1。Let's Encrypt于2016年初推出时采用90天有效期,目的是推动证书更新自动化1。此次调整旨在通过缩短证书生命周期来降低私钥泄露风险,并加速HTTPS在互联网上的采用1。
Let's Encrypt has announced plans to reduce the validity period of its free SSL/TLS certificates from 90 days to 64 days, effective February 10, 2027 1. The certificate authority will begin testing the shorter 64-day lifetime starting October 14, 2026, with participation available on an opt-in basis 1. Modern ACME clients that support ARI (ACME Renewal Information) will transition seamlessly to the new certificate duration 1.
The move is intended to enhance network security by reducing the window of vulnerability associated with private key compromise and to accelerate the adoption of HTTPS 1. Let's Encrypt, which launched in early 2016 with 90-day certificates designed to encourage automated renewal practices, is now tightening that timeline as part of its ongoing effort to strengthen web security standards 1.
评论
还没有评论,欢迎留下第一条。