Impact of Reduced TLS Certificate Lifetimes on CA-Signed SAML Certificates

Wei Dai Wei.Dai at Clarivate.com
Tue May 20 16:56:27 UTC 2025


Hi,

As highlighted in the article below, the lifetime of TLS certificates and the reusability of CA-validated information are set to be reduced:
https://www.digicert.com/blog/tls-certificate-lifetimes-will-officially-reduce-to-47-days

While most of our customers use self-signed SAML certificates, some have policies that require common CA-signed certificates for both SAML IdPs and SPs.

I'd appreciate any insights and comments on the potential impact of this 47-day move on the IdPs/SPs using common CA-signed certificates. For example, if an IdP or SP uses a DigiCert certificate, will the maximum lifetime of the certificate have to be reduced to 47 days in a few years?

Thank you in advance!

Wei




Confidentiality note: This e-mail may contain confidential information from Clarivate. If you are not the intended recipient, be aware that any disclosure, copying, distribution or use of the contents of this e-mail is strictly prohibited. If you have received this e-mail in error, please delete this e-mail and notify the sender as soon as possible.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20250520/37710a76/attachment.htm>


More information about the users mailing list