
Google has announced that its Chrome browser will no longer support security certificates issued by Entrust and AffirmTrust. Starting November 1, 2024, TLS authentication certificates from these two entities will no longer be trusted by default.
“Publicly disclosed incident reports over the past several years have revealed a concerning pattern of behavior by Entrust.”notifies the Chrome Security Team. The certificate authority’s processes no longer meet Mountain View’s security requirements, which has eroded trust in its competence, reliability, and integrity.
Chrome revolutionizes management of security certificates
“Certificate authorities play a privileged role on the Internet because they provide encrypted connections between browsers and websites”reminds us of Google, which believes that this kind of responsibility brings expectations “for security and compliance purposes, especially those defined by TLS requirements”.
“Over the past six years, we have seen a pattern of non-compliance, unfulfilled improvement commitments and a lack of tangible, measurable progress in response to incident reports.”Regrets Google. “Chrome’s continued reliance on Entrust is no longer justified”The American firm concludes:
Blocking security certificates issued by Entrust and AffirmTrust will be effective in almost all environments in Chrome versions 127 and above of the browser: Windows, macOS, ChromeOS, Android and Linux (iOS prohibits the use of Chrome Certificate Validator and Chrome Root Store).
However, users will have the option to manually re-enable the banned certificates in Chrome settings at their own risk. If you choose to keep the default options, you will no longer be able to access websites that distribute certificates issued by Entrust or AffirmTrust after October 31, 2024. You will then see a warning screen like the one in the screenshot below.


Support our work ❤️
If you enjoyed this article, consider leaving a tip to help us keep publishing great content.
























