Google and Apple Propose Drastic Cut to SSL Certificate Lifespans: 47 Days Instead of One Year
Google and Apple are proposing to reduce SSL/TLS certificate lifespans from one year to just 47 days, marking a significant shift in digital security practices.
This change aims to enhance security through more frequent certificate updates, though it may present challenges for organizations without robust certificate automation processes in place.
Key Preparation Steps:
- Identify all external and internal public certificates
- Create a comprehensive vendor technology inventory
- Implement automated SSL/TLS certificate management
- Develop a structured rollout plan for 47-day certificate issuance
- Establish a Cryptographic Centre of Excellence (CCoE) for improved crypto-agility
Event Details:
- Date: November 21, 2024
- Time: 11:00 AM ET
- Duration: 60 Minutes
Contributors:
Tim Callan headshot in collared shirt
Chief Compliance Officer
Man wearing plaid shirt headshot
Fellow
Related Areas:
- Certificate Lifecycle Management (CLM)
- Post quantum cryptography (PQC)
- SSL/TLS