Sectigo Blog

Authenticating with public certificates? Stop. What you must change by 2026

By February 2027, public certificate authorities (CAs) will stop supporting TLS client authentication due to Chrome’s new root program rules. Organizations relying on public SSL/TLS certificates for user, device, or application authentication will need to switch to private CAs. This shift impacts VPNs, mTLS, Wi-Fi onboarding, and more. Modern private CA solutions, combined with Certificate Lifecycle Management (CLM), offer a secure, scalable path forward.

Jason Soroko