Chrome's root store policy now requires dedicated CA hierarchies exclusively for TLS server authentication, ending support for client authentication, S/MIME, and code signing by June 2026. Major CAs like DigiCert and Sectigo have already stopped issuing multipurpose certificates. While this strengthens Web PKI security by

6m read timeFrom feistyduck.com
Post cover image
Table of contents
Red Sift's Guide to Certificate Lifecycle ManagementShort News

Sort: