With secure HTTP — aka HTTPS (the “S” is short for “secure”) — swiftly becoming universal on the Internet, it is important to know how to configure HTTPS for your website the right way. The payoff for properly securing your website has m…
PKI Consortium blog
Posts by tag CAA
Looking Back at 2017 2017 saw the end of SHA 1 in public trust SSL/TLS certificates and the start of Certification Authority Authorization (CAA) allowing domain owners to author…
Things are certainly heating up at the CA/Browser with exciting proposals surrounding inclusion of the Wi Fi Alliance (WFA) as a subjectAltName otherName, new validation methods…
Looking Back at 2016 Fortunately, 2016 was not a year full of SSL/TLS vulnerabilities. Although some researchers did prove old cryptography algorithms should be put out to pastu…
Looking Back at 2015 A number of new tactics proved 2015 was no exception to an active year defending against ever increasing security issues. Vendors found new and creative way…
Once again Browsers and Certificate Authorities are in the news over the reported mis issuance of an SSL server certificate to a google.com domain. Discovered by Google most lik…
Looking Back at 2014 End of 1024 Bit Security In 2014, the SSL industry moved to issuing a minimum security of 2048 bit RSA certificates. Keys smaller than 2048 are no longer al…
Short answer: Government CAs can still be considered “trusted third parties,” provided that they follow the rules applicable to commercial CAs. Introduction On July 8 Google ann…
CA Security Council (CASC) members Trend Micro, Go Daddy, and Symantec participated in a discussion panel at the 2014 RSA Conference in San Francisco on February 24 entitled “Ne…
Looking Back at 2013 Protocol Attacks The year started with a couple of SSL/TLS protocol attacks: [Lucky Thirteen][1] and [RC4 attack][2]. Lucky Thirteen allows the decryption o…

