Public Certificate Authorities will stop issuing TLS certificates with both serverAuth and clientAuth Extended Key Usage (EKU) starting June 15, 2026, following Google Chrome's root store policy changes. Organizations using mutual TLS authentication need to audit their certificate trust stores and ensure they include the new
•5m read time• From blogs.cisco.com
Table of contents
What is Extended Key Usage (EKU) and Why It MattersChanges to Public TLS CertificatesCertificate Authority (CA) and EKU Mapping for Cisco ServicesUnderstanding Trust Stores and Their ImportanceHow to Verify What Is in Your Trust StoreHow to Ensure You Are Not ImpactedSort: