SSL hasn't been a standard in use for nearly thirty years, but we still use the word. We discuss why that is, what else we might say, and the expected effect of Merkle Tree Certificates (MTC) on our technical vocabulary.
Ressources
With the upcoming deprecation of client authentication using publicly trusted TLS certificates, we go over the common use cases for these certificates. We discuss the reasons public trust is often chosen and how to transition away from it.
Sectigo Orchestration Gateway (SOG) est une solution légère pour Sectigo Certificate Manager (SCM) qui simplifie la gestion des certificats TLS. Elle remplace les scripts et connecteurs complexes par une passerelle unique, offrant une automatisation de bout en bout, de la détection au renouvellement. SOG sécurise l'accès grâce à la récupération des identifiants « juste à temps » (PAM) et prépare les organisations à des durées de vie des certificats plus courtes et à la cryptographie post-quantique.
Découvrez comment SOG s'associe à SCM pour offrir une automatisation des certificats sécurisée, évolutive et régie par des politiques.
Découvrez comment SOG étend les fonctionnalités de SCM pour automatiser les opérations liées au cycle de vie des certificats TLS dans des environnements hybrides et multicloud complexes.
Sectigo Blog
Optimisation de la gestion du cycle de vie des certificats (CLM) avec Sectigo Orchestration Gateway (SOG)
Sectigo Orchestration Gateway (SOG) unifie l’automatisation des certificats, en remplaçant les scripts et les connecteurs par une orchestration évolutive et sécurisée du cycle de vie.
Anthropic recently announced that Mythos has found mathematical weakness in the core algorithm for the third-round NIST PQC candidate HAWK, effectively halving its effective key strength. Mythos also developed a faster attack on a round-reduced version of AES-128. These are not implementation attacks but mathematical attacks on the core cryptography. We discuss the massive implications of these developments.
A newly revealed flaw in Active Directory Certificate Services (AD CS) allows an attacker to improperly obtain cryptographic credentials for an agent. We discuss the implications that this flaw Certighost (pronounced sert-uh-GHOST) has for agentic AI at large.
Because of a change in the drop-dead date, we have observed confusion about the timeline for deprecation of client authentication and mTLS for public TLS certificates. This is an inflexible deadline, and enterprises that are not ready risk outage. In this episode we spell out these dates very clearly.
In our series on digital identity for AI agents, we discuss FAPI 2.0 as an option.
In our ongoing series on digital identity for agents, we have previous discussed use of certificates for authentication. In this episode we describe how cryptographic proof of possession can enable secure authentication using tokens.
Les MTC réduisent la surcharge liée à la cryptographie post-quantique (PQC) grâce à des preuves compactes, permettant ainsi une authentification des certificats post-quantiques rapide, transparente et évolutive.
We survey different strategies for securely authenticating agentic AI, including certificates and SPIFFE. We discuss Zero Trust and the Principle of Least Privileges as applied to agents.
Anthropic has announced its intentions to support SPIFFE/SPIRE with the SPIRE server rooted in an "upstream authority," which will require a root private CA rather than allowing self-attestation for agentic AI.
In our episode 640 we defined SPIFFE, which provides digital identity for agentic workloads. In this episode we explain SPIRE (SPIFFE Runtime Environment), the SPIFFE certificate provisioning protocol.
SPIFFE (Secure Production Identity Framework for Everyone) is a standard for digital identity for agentic workloads. In this episode we explain.
Besoin d'aide ?
Besoin d'aide pour effectuer un achat ? Contactez-nous dès aujourd'hui pour que votre certificat soit délivré immédiatement.