-
Blog Post Apr 11, 2019
Should the EV-SSL-Enabled Interface Be Called a “Green Address Bar?”
When Extended Validation (EV) SSL first launched in 2007 people began to refer to the "green address bar." Browser interfaces have evolved since then. Perhaps the way we refer to how these TLS / SSL certificates display should evolve as well.
-
News Article Apr 08, 2019
Digital certificate industry experts have recently discovered a flaw in the certificate generation practices of several major CAs, which has resulted in millions of estimated active TLS/SSL certificates that are non-compliant with mandatory industry standards. These standards are engineered to protect cryptographic security as well as trustworthy identity information in public certificates.
-
Blog Post Apr 04, 2019
Today, automated certificate management is essential. Use a Sectigo Proxy with Windows Active Directory server to issue both public & private certificates.
-
Press Release Apr 04, 2019
Sectigo today announced support for the ACME protocol in its popular Sectigo Certificate Manager platform. By adding ACME support, Sectigo brings the reliability and efficiency of automation to enterprise certificate management.
-
Product Video Apr 01, 2019
Sectigo's ACME Automation
Sectigo offers several automation capabilities, including support of the ACME protocol. Come check out how we make it easier than ever for automated deployments of SSL certificates.
-
News Article Mar 27, 2019
Tim Callan, senior fellow at Sectigo, told SC Media UK that automation of certificate lifecycle management – including renewal – is key. "A good automated platform can track certificates, notify IT professionals when they’re due to expire, and even automatically replace them with new certificates," he said.
-
Blog Post Mar 26, 2019
Why CAs Charge More for Extended Validation SSL
Extended Validation (EV) SSL certificates are one of three standard SSL certificate types issued by Certificate Authorities: DV, OV, and EV. What makes EV certificates different from the others is that they provide the highest assurance that the domain is NOT associated with a bad actor. When users see a company-branded address bar next to the URL, they can know that they are on a trusted domain.
So is an EV SSL certificate right for you? In order to determine this, it’s important to understand why the cost is higher than other certificate options, the unique value it provides, and how the issuance process works.
-
Case Study Mar 25, 2019
After partnering with Sectigo and expanding its product portfolio to sell SSL products, Uniregistry saw quick gains in conversions and product adoption.
-
Podcast Mar 25, 2019
Root Causes 09: 63-bit Serial Numbers
A recently discovered flaw in common practices reveals that potentially millions of active SSL certificates fall short of cryptographic requirements.
-
Product Video Mar 21, 2019
Web Host Resellers: How to Get Certificates Issued Faster
An overview of the SSL / TLS validation process including differences for DV, OV and EV authentication levels, and causes of delayed orders.
-
Blog Post Mar 13, 2019
63-Bit Password Emphasizes Role of Automation in Enterprise PKI
Industry PKI experts recently have discovered a flaw in certificate generation practices that employ the commonly used EJBCA CA tool, which can result in serial numbers with 63 bits of entropy as opposed to the 64 bits required by public certificate guidelines. Episodes like this one put a spotlight on the value of automation in certificate practices. Automated capabilities enable the consistently correct maintenance, revocation, and replacement of a large number of certificates with little human interaction required.
-
Blog Post Mar 13, 2019
Industry PKI experts recently have discovered a flaw in certificate generation practices that employ the commonly used EJBCA CA tool, which can result in serial numbers with 63 bits of entropy as opposed to the 64 bits required by public certificate guidelines. News reports indicate that several certificate issuers are affected. We would like to clarify that NO active public certificates from Sectigo are subject to this flaw.