<?xml version="1.0" encoding="utf-8" standalone="yes"?>
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      
      <title>Zertifikate für Server und Nutzer on LRZ Service Status</title>
      <link>https://status.lrz.de/affected/zertifikate-f%C3%BCr-server-und-nutzer/</link>
      <description>Ankündigungen und Vorfälle</description>
      
      <language>de</language>
      
      <lastBuildDate>Fri, 22 Nov 2024 13:08:18</lastBuildDate>
      <updated>Fri, 22 Nov 2024 13:08:18</updated>
      
      
      
        <atom:link href="https://status.lrz.de/affected/zertifikate-f%C3%BCr-server-und-nutzer/index.xml" rel="self" type="application/rss+xml" />
      
         
        <item>
          <title>[i] Migration to new certificate provider</title><link>https://status.lrz.de/issues/zertifikate-f%C3%BCr-server-und-nutzer/2024-11-22-zertifikate-f%C3%BCr-server-und-nutzer-migration-to-new-certificate-provider/</link>
          <pubDate>Fri, 22 Nov 2024 13:08:18</pubDate>
          <updated>Fri, 22 Nov 2024 13:08:18</updated>
          <guid>https://status.lrz.de/issues/zertifikate-f%C3%BCr-server-und-nutzer/2024-11-22-zertifikate-f%C3%BCr-server-und-nutzer-migration-to-new-certificate-provider/</guid>
          <description>  
    
    
      Fr., 22.11.2024 13:08
    
    
    
&lt;br&gt;
            Betroffene Services: [Zertifikate für Server und Nutzer]
            &lt;h2 id=&#34;mid-november-2024&#34;&gt;Mid November 2024&lt;/h2&gt;
&lt;p&gt;We received information from DFN that Sectigo has cancelled the SSL-contract effective &lt;strong&gt;10th of January 2025.&lt;/strong&gt; DFN has collected the available facts and some answers &lt;a href=&#34;https://doku.tid.dfn.de/de:dfnpki:tcsfaq:aktuellesituation&#34;&gt;here&lt;/a&gt;. That means that we need a new Certificate Authority before then.&lt;/p&gt;
&lt;p&gt;LRZ-PKI is working on a continuation strategy that will be actionable around &lt;strong&gt;mid December&lt;/strong&gt;. If you have further questions, you may &lt;a href=&#34;https://servicedesk.lrz.de/de/simplesubmit/43&#34;&gt;open a Servicedesk ticket&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Before we get locked out of Sectigo&amp;rsquo;s services, LRZ-PKI will use the Sectigo-API to trigger a &lt;strong&gt;renew on all TLS-certificates&lt;/strong&gt; provided by us. This will give you the longest runway possible. It is of course not required to install the renewed certificate right away. You can use current certificates until their natural expiry-date and then switch as usual.&lt;/p&gt;
 
            
          </description>
        
          <category>Zertifikate für Server und Nutzer</category>
        
        </item>
      
    </channel>
  </rss>  