What’s happening?
From February 26, 2026, there has been an industry-wide change mandated by the CA/Browser Forum (the governing body of the SSL industry). SSLs now have shorter lifespans to improve security by ensuring that encryption keys are rotated more frequently and that domain ownership is verified more often.
What’s changing?
When you buy a 1‑year SSL, the certificate itself will be issued for ~6 months (validity set to 199 days) instead of a full year.
Before it expires, we will be in contact to re-issue for a new certificate so your site stays covered for the full year you purchased.
What’s not changing?
- Your SSL plan: You still buy a 1‑year SSL at the same price.
- Your total coverage: You still get a full year of SSL protection—we just reissue mid‑year to comply with provider rules.
- Support and renewal reminders: Still included.
- Your hosting products: No changes.
How will my 1‑year SSL order work now?
- You place a normal 1‑year SSL order.
- Our system issues the first certificate with ~6 months (199 days) validity.
- We notify you ahead of expiry to prepare your CSR (Certificate Signing Request).
- You send us a new CSR
- We issue your new certificate and notify you when it’s ready.
- Your coverage continues without interruption for the full year you purchased.
What do I need to do?
- Have your CSR ready when we ask for it:
- We’ll send reminders at 30 days and 14 days before your current certificate’s expiry.
- Send us your new CSR promptly when you get our reminder.
- Have your CSR ready when we ask for it:
Will I be charged again for the mid‑year reissue?
No. The reissue is included in your 1‑year purchase.
What notifications will I receive?
- Order Confirmation: Immediately after your 1‑year purchase.
- CSR Reminder: 30 days before expiry—get your CSR ready.
- CSR Reminder: 14 days before expiry—final preparation reminder.
- Certificate Re-issued: After issuance—we’ll notify you your new certificate is available
Do I need to change anything on my hosting?
No. Your hosting products remain the same.
I don’t know what a CSR is—what should I do?
- A CSR (Certificate Signing Request) is a small file generated on your server that helps create your SSL certificate.
- Use your control panel (e.g., cPanel/Plesk/IIS) to generate it, or follow our CSR upload guide in the order requirements template you’ll receive.
- You’ll need:
- Common Name (CN): your domain (e.g., www.example.com)
- Organization details (for OV/EV certificates)
- Key length: 2048‑bit or higher
- Country/State/Locality matching your legal entity (OV/EV)
If you’re stuck, our support team can guide you through it.What if I don’t upload a CSR in time?
Your certificate may lapse at the end of its 199‑day validity.
We’ll keep reminding you, but we can’t reissue without a valid CSR.
If a lapse occurs, you can still upload a CSR afterward and we’ll reissue promptly—but your site may show a browser warning until the new certificate is installed.
Can I cancel or get a refund?
Standard cancellation and refund policies still apply to your purchased term. The $0 reissue is part of your term and not billable separately.
- Security best practices
- Keep your private key secure and never share it.
- Use 2048‑bit or stronger keys.
- Rotate keys if you suspect compromise—contact support immediately.
- Maintain updated contact emails so you receive all reminders.