Jump to content

Recommended Posts

  • 2 weeks later...
Posted
It still says the same. Anyone know what's happening? I'm going to need a certificate in the next few weeks. Does anyone know of any other alternatives for free?
Posted
If it's standard certificates then contact your LEA as they can provide free security certificates for schools through an agreement with JANET. They may not be aware of this so you may need to be persistent, if they contact JANET they will set them up to issue them, the certificates are actually issued through Comodo.

Details here - https://www.ja.net/products-services/janet-connect/janet-certificate-service

 

I thought that stopped a few years ago and you had to pay now... if not that's good to know as I'll be after an SSL cert over the summer.

  • 2 weeks later...
Posted

Could it be related to this? :confused:

 

SSL Certificates for Internal Server Names - After 1 November 2015 Certificates for Internal Names Will No Longer Be Trusted

 

The CA/B Forum is a collaborative effort between Certificate Authorities (companies like DigiCert that issue publicly-trusted certificates) and web browsers (companies like Mozilla or Microsoft that facilitate secure connections).

 

Because of these new requirements, Certificate Authorities (CAs) must immediately begin to phase out the issuance of SSL Certificates for internal server names or reserved IP addresses and eliminate (revoke) any certificates containing internal names by October 2016. In addition, the baseline requirements prevent CAs from issuing internal name certificates that expire after November 1, 2015. After 2015 it will be impossible to obtain a publicly-trusted certificate for any host name that cannot be externally verified.

 

These baseline requirements are also being incorporated into global auditing standards. They were included in the WebTrust and ETSI auditing standards for CAs on Jan 1, 2013. Once the requirements are adopted, browsers will require certification from auditors that a CA meets the baseline requirements prior to renewing their root certificate.

 

What Does This Mean for You?

If you are a server admin using internal names, you need to either reconfigure those servers to use a public name, or switch to a certificate issued by an internal CA before the 2015 cutoff date. All internal connections that require a publicly-trusted certificate must be done through names that are public and verifiable (it does not matter if those services are publicly accessible).

Posted

 

Unlikely, these are proper external facing certs, I emailed them and got this in reply which does not look promising. I think it may have more to do with the US governments campaign to 'own' everything internet security related so they can 'monitor' it for 'safety'.

 

IPSCa

We do not know when it will be available again, so the recommendation is you purchase your cert from other CA else.

 

 

Best regards

 

Hopefully they pull through but for the moment it looks like purchasing is the only option.

  • 2 months later...
  • 9 months later...
Posted
The PSW GROUP will continue the free edu certs offer from ipsCA. However it's limited to one FQDN per institution and one particular product based on PSW GROUPs decision (for the time being, it's PSW GROUPs PositiveSSL offer with 1 year validity). On ordering please refer to this article.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...