Technology
Let's Encrypt will cut default TLS certificate lifetimes to 64 days in February 2027
Let's Encrypt said on October 7 that from February 10, 2027 every certificate it issues or renews on its default profile will be valid for 64 days instead of 90, with the last 90-day certificate expected to expire on May 11, 2027. It will begin testing 64-day certificates in its staging environment on October 14, 2026. The non-profit advised operators to stop hard-coding renewal dates and to verify their ACME clients support ARI, ahead of a further cut to 45 days planned for 2028.