Story image

DigiCert conquers Google's distrust of Symantec certs

12 Dec 2018

After a long battle against Google, DigiCert has finally managed to re-establish online trust for its Symantec security certificates.

Since DigiCert bought Symantec’s Website Security and PKI business for US$950 million in 2017, the company has been on a mission to restore trust and replace more than five million Symantec certificates.

The saga came after Google  - and in particular Google Chrome – automatically distrusted all websites with Symantec security certificates and marked them as insecure. Over the last year DigiCert has been working with companies whose websites used the distrusted Symantec certificates, and replaced them with trusted DigiCert certificates free of charge.

When Google released Chrome 70, it signalled the end of Google’s Symantec root distrust plan, DigiCert says.

“DigiCert, along with our partners and customers, has executed an extraordinary certificate replacement process for a large segment of our industry. Our teams have worked many long hours to ensure this event had minimal impact to our customers and the Internet in general, and I am very grateful for their efforts,” explains DigiCert CEO John Merrill. 

“This could have been an extremely disruptive event to online commerce. But just over a year after DigiCert closed the acquisition of Symantec’s Website Security business, we have successfully completed our requirements for Chrome.”

DigiCert says it had a number of tasks relating to the certificate replacement plan. They include:

•    Managing wholesale replacement of Symantec’s multiple certificate authentication (CA) backend systems in one month between Nov. 1 and Dec. 1, 2017. •    Combining validation teams and training employees on DigiCert’s compliant CA processes. •    Revalidating domains and issuing more than 5 million replacement certificates for Symantec, VeriSign, Thawte, GeoTrust and RapidSSL customers. •    Revalidating more than 550,000 organisational identities that moved to DigiCert trusted roots. •    Providing support, tools and information to partners and customers to facilitate free replacements for all impacted TLS certificates. These efforts have included millions of emails, in-console messages, and uncounted outbound phone calls to reach all affected.   •    Redesigning and improving validation systems and automation across the CA infrastructure to improve scaling and provide a consistent, customer-centric, fast experience. 

“Even with the intense focus on the replacement process, we are excited to be showing growth in 2018,” says Merrill.

DigiCert says it remains committed to providing CA services and aims to ensure customers’ confidence in the company’s processes and the TLS industry in general.

The company has made a number of improvements including major investments into infrastructure and data centres; partnerships that are able to serve quantum computers with post-quantum cryptography; and developing secure solutions powered by blockchain.

With the completion of our part of this unprecedented distrust management event, we want to thank our partners and customers, as well as the browser and security communities, for working with us,” says Merrill. 

“Moving forward, we are excited about refocusing our talented teams to produce needed advancements in trustworthy communications for the web PKI and a variety of emerging markets and technologies. As we do, we will stay true to the values that have made DigiCert the most trusted brand in our industry.” 

Better data management: Whose job is it?
An Experian executive’s practical advice on how to structure data-management roles within a modern business environment.
Platform9 and Intersect partner to bring unified cloud to A/NZ
“For Intersect, Platform9 represents the single most strategic solution to a set of challenges we see expanding across the board."
Meet the future of women in IT
Emily Sopers has just won Kordia’s first ever Women in Technology Scholarship, which was established to address gender imbalance in the information and communications technology (ICT) sector.
Web design programmers do an about face – again!
Google is aggressively pushing speed in the mobile environment as a critical ranking factor, and many eb design teams struggling to reach 80%+ speed scores on Google speed tests with gorgeous – but heavy - WordPress templates and themes.
Digital spending to hit US$1.2 trillion by 2022
A recent study by Zinnov shows that IoT spend reached US$201 billion in 2018 while outsourcing service providers generated $40 billion in revenue.
'Iwi Algorithm' can grow Aotearoa's mana
Ngāti Whātua Ōrākei innovation officer Te Aroha Grace says AI can help to combine the values from different cultures to help grow Aotearoa’s mana and brand – and AI is not just for commercial gain.
Dropbox brings in-country document hosting to A/NZ & Japan
Dropbox Business users in New Zealand, Australia, and Japan will be able to store their Dropbox files in-country, beginning in the second half of 2019.
Why 'right to repair' legislation could be a new lease on life for broken devices
“These companies are profiting at the expense of our environment and our pocketbooks as we become a throw-away society that discards over 6 million tonnes of electronics every year.”