The Cloudflare Blog The Cloudflare Blog -

How we ensure Cloudflare customers aren't affected by Let's Encrypt's certificate chain change

Let’s Encrypt’s cross-signed chain will be expiring in September. This will affect legacy devices with outdated trust stores (Android versions 7.1.1 or older). To prevent this change from impacting customers, Cloudflare will shift Let’s Encrypt certificates upon renewal to use a different CA

Let's Encrypt将对其证书链进行更改,影响依赖于其的旧设备和系统。Cloudflare将修改其证书流程以继续为旧设备上的用户提供服务。Cloudflare确保客户始终可以获得TLS证书,采用最佳安全实践,优化未来扩展,支持所有客户。Cloudflare将自动将Let's Encrypt证书转移到另一个CA以供Universal SSL和SSL for SaaS客户使用。使用高级证书或自定义证书的客户将收到电子邮件通知并可能需要更改其CA。

CA Cloudflare Let's Encrypt certificate chain legacy devices

相关推荐 去reddit讨论