Blog about digital certificates, CAs, and security
Quantum Computers and the Internet: What Should We Prepare For?
Terms like “post-quantum cryptography” or “the quantum threat to the internet” may sound like science fiction. But the threat is real and already underway, affecting how securely we shop, bank, and communicate online. Here’s what you need to know—without…
11 Aug 2026 | Jindřich ZechmeisterFrom the latest articles
Trust Lifecycle Manager: Certificate Management as a Jigsaw Puzzle
Certificate management follows the same old pattern in many organizations: an Excel spreadsheet tracking expiration dates, email reminders nobody reads, and the occasional panic when a certificate expires on a production service no one even knew existed.…
29 Jul 2026 | Jindřich ZechmeisterThe ACME CAA extension becomes mandatory
Starting in March 2027, all certificate authorities will be required to support the ACME CAA extension. What does this mean for TLS/SSL certificate issuance, and how does the extended CAA record work in practice?
26 Jun 2026 | Petra SalašováMandatory record in Certificate Transparency for all new TLS certificates
Starting June 1, 2026, DigiCert will log all newly issued public TLS certificates, including reissued certificates, to Certificate Transparency (CT) logs. This change applies to all certificates issued by DigiCert certificate authorities, regardless of validation…
5 Jun 2026 | Petra SalašováSpring changes in root/intermediate certificates
During April and May 2026, selected root and intermediate certificates within the Mozilla and DigiCert ecosystems will be revoked. This article summarizes the reasons for these changes and their practical implications.
8 Apr 2026 | Jindřich Zechmeister