Blog about digital certificates, CAs, and security

Security

Quantum Computers and the Internet: What Should We Prepare For?

Terms like “post-quantum cryptography” or “the quantum threat to the internet” may sound like science fiction. But the threat is real and already underway, affecting how securely we shop, bank, and communicate online. Here’s what you need to know—without…

11 Aug 2026 | Jindřich Zechmeister

From the latest articles

Security

Trust Lifecycle Manager: Certificate Management as a Jigsaw Puzzle

Certificate management follows the same old pattern in many organizations: an Excel spreadsheet tracking expiration dates, email reminders nobody reads, and the occasional panic when a certificate expires on a production service no one even knew existed.…

29 Jul 2026 | Jindřich Zechmeister

Recently

The ACME CAA extension becomes mandatory

Starting in March 2027, all certificate authorities will be required to support the ACME CAA extension. What does this mean for TLS/SSL certificate issuance, and how does the extended CAA record work in practice?

26 Jun 2026 | Petra Salašová

Recently

Mandatory record in Certificate Transparency for all new TLS certificates

Starting June 1, 2026, DigiCert will log all newly issued public TLS certificates, including reissued certificates, to Certificate Transparency (CT) logs. This change applies to all certificates issued by DigiCert certificate authorities, regardless of validation…

5 Jun 2026 | Petra Salašová

Recently

Spring changes in root/intermediate certificates

During April and May 2026, selected root and intermediate certificates within the Mozilla and DigiCert ecosystems will be revoked. This article summarizes the reasons for these changes and their practical implications.

8 Apr 2026 | Jindřich Zechmeister