<p>Let's Encrypt will reduce the lifetime of free SSL/TLS certificates from 90 days to 64 days, effective February 10, 2027. This change aims to enhance security. Administrators using modern ACME clients that support ACME Renewal Information (ARI) will find the transition seamless. However, those relying on hardcoded renewal schedules or manual processes will need to update their systems before certificates begin to expire unexpectedly.</p><p>The testing of the 64-day certificates will commence on October 14, 2026, allowing interested users to opt-in and test their configurations prior to the official rollout.</p><p>Before the launch of Let's Encrypt in early 2016, SSL/TLS certificates were typically issued for 1 to 3 years. The introduction of 90-day certificates aimed to promote renewal automation, which was previously lacking. Shorter validity periods help mitigate risks associated with private key theft and facilitate the broader adoption of HTTPS across the internet.</p>
✓ No loaded language, vague sourcing, or framing detected.
Let's Encrypt reduces SSL/TLS certificate lifetimes to 64 days starting February 2027
Let's Encrypt will shorten the lifetime of its free SSL/TLS certificates from 90 days to 64 days starting February 10, 2027, to improve security. Testing for the new certificates will begin on October 14, 2026, allowing users to prepare for the change.
No note attached
on this article.
Original vs. Neutral
Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027
Let's Encrypt reduces SSL/TLS certificate lifetimes to 64 days starting February 2027