{"id":13510,"date":"2018-10-04T09:00:37","date_gmt":"2018-10-04T17:00:37","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2018\/10\/04\/news-7277\/"},"modified":"2018-10-04T09:00:37","modified_gmt":"2018-10-04T17:00:37","slug":"news-7277","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2018\/10\/04\/news-7277\/","title":{"rendered":"Microsoft partners with DigiCert to begin deprecating Symantec TLS certificates"},"content":{"rendered":"<p><strong>Credit to Author: Microsoft Secure Blog Staff| Date: Thu, 04 Oct 2018 16:00:27 +0000<\/strong><\/p>\n<p>Starting in September 2018, Microsoft began deprecating the SSL\/TLS capability of Symantec root certificates due to compliance issues. <a target=\"_blank\" href=\"https:\/\/security.googleblog.com\/2017\/09\/chromes-plan-to-distrust-symantec.html\" rel=\"noopener\">Google<\/a>, <a target=\"_blank\" href=\"https:\/\/blog.mozilla.org\/security\/2018\/03\/12\/distrust-symantec-tls-certificates\/\" rel=\"noopener\">Mozilla<\/a>, and <a target=\"_blank\" href=\"https:\/\/support.apple.com\/en-us\/HT208860\" rel=\"noopener\">Apple<\/a> have also announced deprecation plans related to Symantec SSL\/TLS certificates. Symantec cryptographic certificates are used in critical environments across multiple industries. In 2017, <a target=\"_blank\" href=\"https:\/\/www.digicert.com\/news\/digicert-completes-acquisition-of-symantec-ssl\/\" rel=\"noopener\">DigiCert acquired<\/a> Symantecs web security business that included their certificate authority business.<\/p>\n<p>&#10;<\/p>\n<p>Since the compliance issues were identified, Microsoft has been engaged with Symantec and DigiCert to uphold industry-wide compliance expectations and maintain customer trust. DigiCert created the deprecation schedule below in partnership with Microsoft to maintain trust in the industry while minimizing impact to our mutual customers.<\/p>\n<p>&#10;<\/p>\n<p>During certificate renewal, customers must now replace their current certificate with one signed by a non-Symantec root. Based on the schedule below, Microsoft Edge and Internet Explorer running on Windows 10\/Windows Server 2016 will no longer trust certificates signed by the associated root certificate if issued after the TLS NotBefore Date. Any certificates issued prior to this date will continue to be trusted until the certificates natural expiration. Internet Explorer running on legacy Windows versions will not be impacted.<\/p>\n<p>&#10;<\/p>\n<p>Customers with questions about their certificates or this deprecation schedule are encouraged to contact DigiCert by visiting <a target=\"_blank\" href=\"https:\/\/www.digicert.com\/security-certificate-support\/\" rel=\"noopener\">SSL Certificate Support<\/a>.<\/p>\n<p>&#10;<\/p>\n<table style=\"width: 1170px;height: 325px\">&#10;<\/p>\n<tbody>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\"><strong>Name<\/strong><\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\"><strong>Thumbprint<\/strong><\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\"><strong>Planned TLS NotBefore Date<\/strong><\/span><\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">Symantec Class 3 Public Primary Certification Authority-G6<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">26A16C235A2472229B23628025BC8097C88524A1<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">9\/30\/2018<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">thawte Primary Root CA-G2<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">AADBBC22238FC401A127BB38DDF41DDB089EF012<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">9\/30\/2018<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">GeoTrust Universal CA<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">E621F3354379059A4B68309D8A2F74221587EC79<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">9\/30\/2018<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">Symantec Class 3 Public Primary Certification Authority-G4<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">58D52DB93301A4FD291A8C9645A08FEE7F529282<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">1\/31\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">VeriSign Class 3 Public Primary Certification Authority-G4<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">22D5D8DF8F0231D18DF79DB7CF8A2D64C93F6C3A<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">1\/31\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">GeoTrust Primary Certification Authority-G2<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">8D1784D537F3037DEC70FE578B519A99E610D7B0<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">VeriSign Universal Root Certification Authority<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">3679CA35668772304D30A5FB873B0FA77BB70D54<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">thawte Primary Root CA-G3<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">F18B538D1BE903B6A6F056435B171589CAF36BF2<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">GeoTrust Primary Certification Authority-G3<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">039EEDB80BE7A03C6953893B20D2D9323A4C2AFD<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 12px\" width=\"390\"><span style=\"color: #0000ff\">GeoTrust<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 12px\" width=\"390\">323C118E1BF7B8B65254E2E2100DD6029037F096<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 12px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">thawte<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">91C6D6EE3E8AC86384E548C299295C756C817B81<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">VeriSign<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">GeoTrust Global CA<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">DE28F4A4FFE5B92FA3C503D1A349A7F9962A8212<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/p>\n<tr style=\"height: 21px\">&#10;<\/p>\n<td style=\"width: 200px;height: 21px\" width=\"390\"><span style=\"color: #0000ff\">VeriSign<\/span><\/td>\n<p>&#10;<\/p>\n<td style=\"height: 21px\" width=\"390\">132D0D45534B6997CDB2D5C339E25576609B5CC6<\/td>\n<p>&#10;<\/p>\n<td style=\"width: 390px;height: 21px\" width=\"390\">4\/30\/2019<\/td>\n<p>&#10;<\/tr>\n<p>&#10;<\/tbody>\n<p>&#10;<\/table>\n<p>&#10;<\/p>\n<p>&nbsp;<\/p>\n<p>&#10;<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/cloudblogs.microsoft.com\/microsoftsecure\/2018\/10\/04\/microsoft-partners-with-digicert-to-begin-deprecating-symantec-tls-certificates\/\">Microsoft partners with DigiCert to begin deprecating Symantec TLS certificates<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/cloudblogs.microsoft.com\/microsoftsecure\">Microsoft Secure<\/a>.<\/p>\n<p><a href=\"https:\/\/cloudblogs.microsoft.com\/microsoftsecure\/2018\/10\/04\/microsoft-partners-with-digicert-to-begin-deprecating-symantec-tls-certificates\/\" target=\"bwo\" >https:\/\/blogs.technet.microsoft.com\/mmpc\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Microsoft Secure Blog Staff| Date: Thu, 04 Oct 2018 16:00:27 +0000<\/strong><\/p>\n<p>Starting in September 2018, Microsoft began deprecating the SSL\/TLS capability of Symantec root certificates due to compliance issues.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/cloudblogs.microsoft.com\/microsoftsecure\/2018\/10\/04\/microsoft-partners-with-digicert-to-begin-deprecating-symantec-tls-certificates\/\">Microsoft partners with DigiCert to begin deprecating Symantec TLS certificates<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/cloudblogs.microsoft.com\/microsoftsecure\">Microsoft Secure<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10759,10378],"tags":[11063],"class_list":["post-13510","post","type-post","status-publish","format-standard","hentry","category-microsoft","category-security","tag-data-privacy"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13510","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=13510"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13510\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=13510"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=13510"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=13510"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}