{
  "id": 12947975,
  "title": "Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027",
  "url": "https://urgent.news/2026/10/08/lets-encrypt-cuts-certificate-lifetimes-to-64-days-starting-february",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-08T19:57:17.000Z",
  "source": {
    "name": "Ars Technica",
    "slug": "ars-technica",
    "url": "https://arstechnica.com/gadgets/2026/10/lets-encrypt-cuts-certificate-lifetimes-to-64-days-starting-february-2027/"
  },
  "original_language": "en",
  "account": "Let's Encrypt plans to reduce the lifetimes of its free SSL/TLS certificates from 90 days to 64 days, effective February 10, 2027. This change aims to enhance security by minimizing the window of vulnerability if private keys are stolen. For administrators who have already adopted modern ACME clients supporting Automatic Renewal Information (ARI), the transition to the new shorter certificate lifetimes should be straightforward. However, those still relying on manual renewal schedules or hard-coded renewal dates must update their systems before winter of 2026, as that will be the deadline for avoiding unexpected certificate expirations. Starting October 14, 2026, Let's Encrypt will begin testing the new 64-day certificates, and interested users can participate in testing their configurations before the change becomes official. Before Let's Encrypt began issuing certificates in early 2016, certificates were often granted for prolonged periods of 1 to 3 years. The service initially introduced 90-day certificates to encourage the automation of certificate renewal processes that were not common at the time. Shorter validity periods for certificates have not only reduced the risk associated with private key theft but have also accelerated the adoption of HTTPS across the web.",
  "summary": "Free SSL/TLS certificate lifetimes reduce to 64 days in February.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}