Google Chrome to Distrust Chunghwa Telecom and Netlock Certificate Authorities (CAs)—What’s Next?
Krupa Patil | | ACME, CA agility, CA distrust, CA migration, certificate authorities, certificate lifecycle management (CLM), crypto-agility, Role Based Access Control (RBAC), TLS certificates
Recently, Google announced that starting August 1, 2025, the Google Chrome browser will no longer trust TLS certificates issued by Chunghwa Telecom and Netlock Certificate Authorities (CAs). According to Google, the decision follows a pattern of compliance failures and a lack of measurable progress in addressing publicly reported issues. Chunghwa ... Read More

How Mature Is Your PKI? Find Out the Smart Way with the PKI Maturity Model
Krupa Patil | | certificate lifecycle management, Certificate Management, CLM solutions, end-to-end automation, PKI Consortium, PKI management, PKI maturity, PKI Maturity Model, PKI performance, PKI strategy, pkiaas, Public Key Infrastructure (PKI)
Assess. Improve. Future-Proof Your PKI Strategy The Need to Give Legacy PKI a Serious Makeover From securing communications and authenticating users to ensuring data integrity, Public key infrastructure (PKI) plays a vital role in keeping today’s organizations secure and trusted. While its importance is clear, deploying and managing PKI effectively ... Read More
Why Every Organization Needs a Crypto Center of Excellence (CCoE) Today
Krupa Patil | | 47-Day TLS Certificates, CCoE, Crypto Center of Excellence, crypto-agility, DEVOPS, NIST Standards, PKI solutions, Post-quantum cryptography (PQC), PQC adoption, TLS certificates
Not long ago, cryptography management was a quiet, behind-the-scenes task. TLS certificates had long validity periods, post-quantum cryptography (PQC) felt like a distant conversation, and maintaining an up-to-date crypto inventory wasn’t a top priority. Fast forward to 2025, and the landscape has shifted dramatically. TLS certificate lifespans are shrinking, thanks ... Read More

AppViewX AVX ONE PQC Assessment Tool – Kickstart Your PQC Readiness Journey with Complete Cryptographic Visibility
Krupa Patil | | CI/CD Pipeline Integration, crypto-agility, Cryptographic Bill of Materials (CBOM), NIST-standardized PQC encryption algorithms, PKI as a Service, Post-quantum cryptography (PQC), PQC, PQC algorithms, PQC readiness score, PQC ready PKI
As the reality of quantum computers capable of breaking today’s encryption algorithms gets closer and closer, the urgency around post-quantum cryptography (PQC) is growing fast. Since NIST announced the first set of standardized PQC algorithms in August 2024 and a timeline for implementation, governments worldwide have launched official roadmaps and ... Read More
Why the Finance Sector Must Lead the Shift to Post-Quantum Cryptography
Krupa Patil | | certificate lifecycle management, crypto-agility, Cryptographic Bill of Materials (CBOM), NIST, PKI, Post-quantum cryptography (PQC), PQC algorithms, PQC migration plan, PQC readiness, quantum‑safe cryptography, SHA‑1, SHA‑2
Quantum computing is not some far-off theory anymore, and the threat to today’s encryption is real with the clock running for organizations to be resilient. And for banks and finance organizations sitting on mountains of sensitive data, the urgency to prepare for post-quantum cryptography (PQC) is growing. With Q-day (the ... Read More
Three Must-Have Capabilities to Prepare for 47-Day TLS Certificates
Krupa Patil | | 47-day TLS validity, ACME, certificate lifecycle management (CLM) solution, clm, CLM framework, ITSM, PKI, SIEM, simple network management protocol (SNMP), Smart Discovery, TLS lifespans
Recently, the CA/Browser (CA/B) Forum approved Ballot SC-081v3, launching a gradual reduction of public TLS certificate lifespans—from today’s 398 days down to just 47 days by 2029. This landmark change ranks among the biggest in PKI in recent years and is already driving intense conversations about how reduced validity periods ... Read More

Building a Smarter, Safer Grid with IEEE 2030.5 and Certificate Lifecycle Management Automation
Krupa Patil | | AVX ONE CLM, certificate lifecycle management (CLM), digital certificates, hsms, PKI (public key infrastructure), role-based access controls (RBAC), TCP/IP
The renewable energy landscape is evolving fast—bringing smarter, more sustainable ways to generate, distribute, and use power. At the heart of this transformation is a lesser-known but vital standard: IEEE 2030.5—a foundational protocol that helps smart energy devices and the power grid communicate safely and reliably. Dive into this blog ... Read More

It’s Official: CA/B Forum Votes Yes to 47-Day TLS Certificates
Krupa Patil | | 47-Day TLS Certificates, ACME, CA/B Forum, certificate lifecycle management (CLM), CLM solution, crypto-agility, PKI, Post-quantum cryptography (PQC), RBAC, TLS certificates
Big news in the world of PKI and digital trust: the CA/B Forum has officially passed Apple’s bold proposal to slash the maximum lifespan of public TLS certificates from 398 days to just 47 days by 2029. Yes, you read that right—by 2029, certificates will expire almost eight times faster ... Read More

The UK’s National Cyber Security Centre Presents Timeline and Roadmap for PQC Migration
Krupa Patil | | CLM Automation, cryptography, Cryptography Bill of Materials (CBOM), NIST-standardized PQC encryption algorithms, Post-quantum cryptography (PQC), PQC migration, Public Key Cryptography, United Kingdom's National Cyber Security Centre (NCSC), X.509 PKI certificates
The United Kingdom’s National Cyber Security Centre (NCSC) has just released updated guidance on migrating to post-quantum cryptography (PQC) to help the nation prepare for developing threats posed by advances in quantum computing. Titled Timelines for Migration to Post-Quantum Cryptography, this guidance is important for two key reasons: A) It ... Read More
From SSL to TLS 1.3: 30 Years of Encryption and Innovation
Krupa Patil | | Cipher Block Chaining (CBC), crypto-agility, encryption, Post-quantum cryptography (PQC), private key, rsa, SHA-1, ssl, TLS 1.1, TLS 1.2, TLS 1.3, transport layer security (TLS)
Thirty years ago, the Internet was a wild, lawless territory—unregulated, unpredictable, and far from secure. Trust on the web was fragile, and encryption was more of a luxury than a necessity. But in 1994, everything changed. The birth of the Secure Sockets Layer (SSL) protocol laid the foundation for a ... Read More