From August 19th 2020, SECTIGO issues SSL certificates with a maximum lifetime of 398 days (13 months) as specified by CA/Browser consortium. SSL certificates with a longer lifetime must be re-issued annually (free of charge). You'll receive reminders via e-mail. SSL certificates issued before August 19th 2020 remain valid until their planned expiry date. Code Signing & S/MIME certificates are not affected and remain valid until their planned expiry date.

What is PRE-SIGN FAILED? What is a CAA record? - DNS Certification Authority Authorization (CAA) Resource Record

The Certification Authority Authorization (CAA) DNS Resource Record allows a DNS domain name holder to specify one or more Certification Authorities (CAs) authorized to issue certificates for that domain.

CAA Resource Records allow a public Certification Authority to implement additional controls to reduce the risk of unintended certificate mis-issue.

This document defines the syntax of the CAA record and rules for processing CAA records by certificate issuers.

Show details in RFC 6844:
https://tools.ietf.org/html/rfc6844


Was this answer helpful?

 Print this Article

Also Read

How to obtain a SSL certificate? How does e-mail authentication work?

After ordering a SSL certificate with InterSSL, you have to place a CSR (Certificate Signing...

Can you issue SSL certificates for .krd / .gov.krd (Kurdistan - Iraq) domains?

YES, the TLD has been added by GeoTrust / RapidSSL on our request for one of our customers. ;-)

How do i create a CSR (Certificate Sign Request) in Microsoft Exchange 2010? How do i install my SSL certificate in Exchange 2010 server?

YouTube: https://www.youtube.com/watch?v=GD0Ro0etUPQ

Requesting SSL certificates and SSL installation for all-inkl.com customers

All-inkl.com enables customers to install InterSSL certificates. You can find a tutorial here...

Secure dovecot TLS and SSL configuration

Settings for /etc/dovecot/conf.d/10-ssl.conf:  ssl = required #the .pem file is .crt appended...