Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
Summary
Let's Encrypt has updated its subscriber agreement to prohibit the use of its certificates in any US-sanctioned territory, effectively cutting off TLS certificate issuance for those regions.
View Cached Full Text
Cached at: 06/10/26, 12:22 AM
Similar Articles
Let's Encrypt Stopping Issuance for Potential Incident
Let's Encrypt is stopping certificate issuance due to a potential incident, with scheduled database maintenance that may cause ACME client timeouts for up to 10 minutes.
A Post-Quantum Future for Let's Encrypt
Let's Encrypt announces plans to adopt Merkle Tree Certificates for post-quantum authentication, addressing the growing urgency to migrate to post-quantum signatures in the Web PKI.
France's Anssi Will Block PQC-Free Products from Certification Starting 2027
France's ANSSI will stop certifying security products without quantum-resistant encryption from 2027, requiring quantum-safe procurement by 2030. This regulatory shift affects government and critical infrastructure markets, driven by concerns over Harvest Now, Decrypt Later attacks.
TLS certificates for internal services done right
Explains how to set up TLS certificates for internal services using split-horizon DNS, a VPN with DNS resolver, and ACME clients like acme.sh with Let's Encrypt, providing a practical alternative to self-signed certificates.
Ignore DNSSEC if you like MITM attacks
The article argues that ignoring DNSSEC exposes users to man-in-the-middle attacks, using examples from email, Matrix, and XMPP, and draws a parallel to the historical resistance against HTTPS.