How TCP really works: Top 3 things you need to know!
YouTube video with the amazing Chris Greer: https://youtu.be/Auwn3RWapRE
How TCP really works: Top 3 things you need to know!
YouTube video with the amazing Chris Greer: https://youtu.be/Auwn3RWapRE
https://www.digicert.com/blog/tls-certificate-lifetimes-will-officially-reduce-to-47-days
The CA/Browser Forum has officially voted to amend the TLS Baseline Requirements to set a schedule for shortening both the lifetime of TLS certificates.
The maximum certificate lifetime is going down:
- As of March 15, 2026, the maximum lifetime for a TLS certificate will be 200 days.
- As of March 15, 2027, the maximum lifetime for a TLS certificate will be 100 days.
- As of March 15, 2029, the maximum lifetime for a TLS certificate will be 47 days.
Does anyone know how this new SSL cert expiry date thing is going to affect things like user authentication with SSL certs, i.e. for openvpn.
If we're running our own CA, can I get safari, chrome et al to accept longer cert expiry?
I've developed a new unofficial metric for #burnout: what percentage of the images you've downloaded or created recently would qualify as shitposting.
Here are some of mine from the last month:
Nur noch 47 Tage:
#Gültigkeit von #TLS - #Zertifikaten wird drastisch verkürzt
Ab 2029 dürfen #TLS-Zertifikate statt 398 nur noch höchstens 47 Tage lang gültig sein. Der von #Apple eingereichte Vorschlag hat breite Zustimmung erhalten.
Das #CA / #Browser #Forum hat beschlossen, die maximale Gültigkeitsdauer digitaler Zertifikate für den verschlüsselten Datenaustausch via #SSL / #TLS von aktuell 398 auf deutlich geringere 47 Tage zu reduzieren.
Specific schedule:
March 15, 2026 - Cert validity (and Domain Control Validation) limited to 200 days.
March 15, 2027 - Cert validity (and Domain Control Validation) limited to 100 days.
March 15, 2029 - Cert validity limited to 47 days and Domain Control Validation limited to 10 days.
There's gonna be a lot of complaints about this in change control meetings over the next year200 days.
Buckle up, kids. Automate your certificate rotations or die trying. WebPKI certificate validity period will be 47 days by 2029. https://www.bleepingcomputer.com/news/security/ssl-tls-certificate-lifespans-reduced-to-47-days-by-2029/
#SSL/#TLS certificate lifespans reduced to 47 days by 2029
Why shorter SSL/TLS certificate lifespans matter https://www.helpnetsecurity.com/2025/04/15/certificate-shorter-lifespans/ #Expertanalysis #cybersecurity #Expertcorner #certificates #Don'tmiss #Hotstuff #opinion #Sectigo #SSL/TLS #News
SSL/TLS Certificate Lifespans Slashed to 47 Days: A New Era of Security Management
The CA/Browser Forum's decision to reduce SSL/TLS certificate lifespans to just 47 days by 2029 marks a pivotal shift in cybersecurity practices. This change aims to enhance security by minimizing ris...
ups #ssl abgelaufen... warum wrude das nicht automatisch verlängert.... grrr
#ssl läuft immer noch nicht grrrrrrrr
ach #hostpoint macht wieder wochenende - das #ssl aktivieren dauert bereits über 1h....
warum immer bei meinen kunden? grrr langsam glaub ich dahinter steckt absicht
OpenSSL 3.5.0 now contains post-quantum procedures
With the new LTS version 3.5.0, OpenSSL adds the post-quantum methods ML-KEM, ML-DSA and SLH-DSA to its library.
OpenSSL 3.5.0 enthält nun Post-Quanten-Verfahren
OpenSSL fügt mit der neuen LTS-Version 3.5.0 seiner Bibliothek die Post-Quanten-Verfahren ML-KEM, ML-DSA und SLH-DSA hinzu.
Hello #fediverse, I am looking for some #cybersecurity help about #safari on #iOS
[Edit: got an answer! Safari removed the lock icon in iOS 18.4 in favor of a full screen warning for non SSL connections. Paraphrased original question below]
I told my mom to always look for the #SSL lock in the URL bar before typing anything into a website (and check URLs for validity and so on).
Now, she never gets the SSL lock in Safari for any website. Ever. I tried to google why and am stumped. Any ideas?
Join Sake Blok for his pre-conference class at SharkFest'25 US on June 16th:
"SSL/TLS Troubleshooting with Wireshark"
This hands-on session will take your troubleshooting skills to the next level, helping you diagnose complex network issues like a pro.
Secure your spot: https://sharkfest.wireshark.org/sfus
They mean this people and service: https://www.buypass.com/products/tls-ssl-certificates/read-more-go-ssl-acme
https://mrrp.chimmie.k.vu/notes/a5wxn6z1094p003p
Does @letsencrypt have any canary page? I would like to keep supporting them because they are the trailblazers of this, but the fear of those in power in the US is real.
jaha. Det är nåt fel på mina cert så kan inte köra SSL. Så försöker laga medelst
%> pip install --upgrade certifi --force-reinstall
men det funkar såklart inte... pga
Could not fetch URL https://pypi.org/simple/certifi/: There was a problem confirming the ssl certificate
jamen jag veeeeet .... Argh!!
antar att jag måste lista ut hur jag gör detta manuellt
I just received a concerning email from the OTF (@opentechfund.bsky.social) stating that a major source of their funding is in jeopardy.
If you care about open-source, anti-censorship, or the open internet, please consider supporting one of the projects they fund.
#FOSS #OpenSource #TechNews
#USPol #Politics #News #PoliticalNews
#NetNeutrality #EFF
#Wikimedia #Signal #SignalApp
#TOR #TAILs #OpenVPN #VPN #LetsEncrypt #HTTPS #SSL
#Censorship #AntiCensorship