Join Sectigo as we explore why traditional automation models are reaching their limits and how organizations can evolve from disconnected certificate management practices to centralized certificate lifecycle orchestration.
Resource Library
TLS certificates from CA/Browser Forum CAs are not the only server certificates in the WebPKI. eIDAS QWACs are treated as server certificates by the major browsers. We see clear progress toward post quantum cryptography (PQC) for TLS by way of the Merkle Tree Certificate (MTC) architecture. But what is the path to PQC for eIDAS? We examine this question.
Sectigo Blog
Sectigo's F5 partnership expands to F5 Distributed Cloud Services: What this means for you
Automate certificate deployment to F5 Distributed Cloud with Sectigo Orchestration Gateway and reduce renewal risk at scale.
As certificate lifespans become extremely short, new methods of delivery become functionally necessary. We explain RFC 9345 and how delegated credentials play a role in CDNs to deliver very short-lived certificates.
Press Release
Sectigo appoints Ian Hassard as Chief Product Officer to lead next phase of Certificate Lifecycle Management platform growth
SCOTTSDALE, Ariz. — September 1, 2026 — Sectigo, a global leader in automated Certificate Lifecycle Management (CLM) and digital certificates, today announced the appointment of Ian Hassard as Chief Product Officer. Hassard will lead Sectigo's global product strategy and drive the continued evolution of Sectigo Certificate Manager (SCM).
With certificate lifespans shortening, we occasionally run into those who disagree with this trend and seek to lengthen maximum term once again. We examine regressive attitudes in PKI, why they occur, and the reasons that lessening security is generally a bad policy.
X9 is a consortium certificate for interbanking applications. There is a common misunderstanding that X9 certificates are a public-trust surrogate for mTLS using WebPKI certificates. We clarify why this is not the case.
Join this session to get a practical view of what X9 certificates are, how they compare to WebPKI, and where they actually make sense in real-world environments.
"Chaos engineering" describes the practice of injecting faults into a system to see what happens. This is a known strategy for deterministic systems, but with the advent of non-deterministic AI systems, chaos engineering has taken on greater importance.
Since frontier-model AIs have been trained on a large portion of published human knowledge, widespread publication of incorrect information can taint AI results. As more AI-generated slop finds its way onto the internet, this runs the risk of further poisoning AI results. This ultimately can result in completely unusable information.
It is possible to use common tools like OpenSSL to create your own ML-DSA private CA. This is a great tool for development and research projects, but Jason explains the pitfalls with trying to do this for production systems.
We are replacing RSA with the combination of ML-DSA and ML-KEM. We explain the naming convention and specifically what these two algorithms do.
Explore advanced SCM Pro capabilities for certificate visibility, risk reduction, monitoring, and automation.
Quick-start guide for evaluating Sectigo Certificate Manager (SCM) Pro through certificate discovery, inventory management, and ACME automation.
Jason explains de-quantization, which is the practice of using our knowledge of how to use a quantum computer to reframe problems for processing using traditional computing architecture.
There is no CABF or root program rule preventing public CAs from implementing new requirements earlier than their assigned due dates. We discuss reasons to implement a rule early and how early it should be.
A PDF file is a go-to digital resource for official documentation: contracts, business agreements, legal documents, and even HR forms. Short for Portable Document Format, this file format was developed by...
It is surprising that we continue to see root expirations occur at the most inopportune times. Weekends, public holidays, even New Year's Eve. In this episode we have simple advice to anybody setting up a new root, which is "look at a calendar."
Need assistance?
Contact our team for help with your purchase or issuing your certificate.