Editor’s Note: Major CAs, including DigiCert and Sectigo, are rolling out these changes ahead of the March 1 deadline.
Shorter code signing certificate lifespans = more secure software supply chains
There have been numerous industry shake-ups in recent years regarding certificate validity periods. Since 2015, we’ve watched the CA/Browser Forum steadily march down SSL/TLS certificate validity periods from five years to one year. (Validity will drop to 47 days by 2029.) The idea is to make digital certificates more secure by:
For code signing certificates, these benefits strengthen your software supply chain. Historically, code signing certificates have been issued with one- to three-year validity periods. Starting on or before March 1, 2026, code signing certificates will be valid for no more than 460 days. (Most CAs are rolling out these changes ahead of time to mitigate last-minute validation delays and other issues.)
What do these certificate lifespan changes mean for your business, and what do you need to do to prepare?
Let’s hash it out.
The post Code Signing Certificates’ Lifespans to Drop to One Year appeared first on Hashed Out by The SSL Store™.
PyPI has adopted PEP 833, which "freezes" the HTML representation of the index API, which…
The Python Package Index (PyPI) now rejects new files being uploaded to releases that are…
Over the next few months, we will be rolling out changes to the PyPI user…
Highlighting the next stage in our sidebar reorganization campaign! We are still primarily focusing on…
Source: SMS Email Gateway ID Provider Country Email Format Notes Id Provider Country Email Address…
In 2023 PyPI completed its first security audit, and I am proud to announce that…
This website uses cookies.