Fri, 9 Oct 2026
Markets
DJIA 44,210.31 +0.42% S&P 500 6,204.88 +0.31% NASDAQ 20,398.05 -0.18% RUSSELL 2000 2,271.14 +0.55% FTSE 100 8,786.20 -0.09% DAX 24,120.40 +0.26% NIKKEI 225 39,986.30 +1.02% HANG SENG 24,072.30 -0.44% US 10-YR 4.281% -0.03 CRUDE OIL $67.41 +0.68% GOLD $3,342.10 +0.21% BTC $61,845 -1.12% EUR/USD 1.1782 +0.14% DJIA 44,210.31 +0.42% S&P 500 6,204.88 +0.31% NASDAQ 20,398.05 -0.18% RUSSELL 2000 2,271.14 +0.55% FTSE 100 8,786.20 -0.09% DAX 24,120.40 +0.26% NIKKEI 225 39,986.30 +1.02% HANG SENG 24,072.30 -0.44% US 10-YR 4.281% -0.03 CRUDE OIL $67.41 +0.68% GOLD $3,342.10 +0.21% BTC $61,845 -1.12% EUR/USD 1.1782 +0.14%
Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027

Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027

Free SSL/TLS certificate lifetimes reduce to 64 days in February.

Let's Encrypt is continuing a push toward improved security by reducing free SSL/TLS certificate lifetimes from 90 days to 64 days, starting on February 10, 2027. For administrators already implementing modern ACME clients that support ARI (ACME Renewal Information), the change should be seamless. For those still relying on hardcoded renewal schedules or manual processes, next winter will be the deadline to update before certificates start expiring unexpectedly.

Starting on October 14, 2026, Let's Encrypt will begin testing the 64-day certificates, and interested users can opt-in to test their setups before production goes live.

Prior to Let's Encrypt's launch in early 2016, certificates were often issued for as long as 1 to 3 years at a time. The service start with 90-day certificates to force renewal automation that didn't previously exist. Shorter certificate validity periods limited vulnerabilities from private key thefts and accelerated HTTPS adoption across the web.

Read full article

Comments