<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>TLS on Harica</title>
    <link>https://news.harica.gr/tags/tls/</link>
    <description>Recent content in TLS on Harica</description>
    <generator>Hugo -- gohugo.io</generator>
    <lastBuildDate>Thu, 29 Jan 2026 12:11:14 +0300</lastBuildDate><atom:link href="https://news.harica.gr/tags/tls/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>UPDATE - &#34;Upcoming changes regarding TLS Client Authentication in TLS Server Authentication Certificates&#34;</title>
      <link>https://news.harica.gr/article/tls-client-authenticaion/</link>
      <pubDate>Thu, 29 Jan 2026 12:11:14 +0300</pubDate>
      
      <guid>https://news.harica.gr/article/tls-client-authenticaion/</guid>
      <description>Updated Feb 17, 2026
Important Notice: We would like to inform you that, following the recent updates to the Chrome Root Program Policy and the extension of the deprecation timeline for the TLS Client Authentication EKU in TLS Server certificates, HARICA will postpone the previously announced actions by approximately nine (9) months.
The updated timeline will be communicated at a later date.
Dear HARICA Subscribers,
We are announcing an upcoming update to our Publicly-Trusted SSL/TLS Web Server Certificates.</description>
    </item>
    
    <item>
      <title>Important Notice: Deprecation of OCSP for HARICA Publicly-Trusted TLS Certificates</title>
      <link>https://news.harica.gr/article/ocsp-deprecation/</link>
      <pubDate>Thu, 29 Jan 2026 12:10:14 +0300</pubDate>
      
      <guid>https://news.harica.gr/article/ocsp-deprecation/</guid>
      <description>Dear HARICA Subscribers,
Effective March 2, 2026, HARICA will officially deprecate the use of the Online Certificate Status Protocol (OCSP) for all newly issued publicly-trusted server TLS certificates, with exceptions made only for specific use cases where required.
In accordance with evolving industry standards and browser requirements, certificates issued after this date will no longer contain an OCSP responder URL in the Authority Information Access (AIA) extension, by default. Instead, certificate revocation status will be managed exclusively through Certificate Revocation Lists (CRLs) and modern browser-native mechanisms.</description>
    </item>
    
    <item>
      <title>Implementation of Multi-Perspective Issuance Corroboration (MPIC) and Mandatory CAA Checks for Mailbox Addresses</title>
      <link>https://news.harica.gr/article/mpic_and_caa_checks/</link>
      <pubDate>Fri, 14 Mar 2025 12:10:14 +0300</pubDate>
      
      <guid>https://news.harica.gr/article/mpic_and_caa_checks/</guid>
      <description>Multi-Perspective Issuance Corroboration (MPIC) Starting on March 15, 2025, HARICA will implement Multi-Perspective Issuance Corroboration (MPIC) for Domain Authorization, Control, and Certification Authority Authorization (CAA) Record checks before issuing any TLS Server Authentication Certificates, in accordance with CA/B Forum Baseline Requirements for TLS Server Certificates.
With MPIC, DNS queries for Domain Validation and CAA checks must be verified from multiple, randomly distributed and distant locations across the Internet. If the information corroboration fails (up to a certain level), the certificate issuance will be blocked.</description>
    </item>
    
    <item>
      <title>HARICA introduces new 2021 hierarchy for SSL/TLS Certificates</title>
      <link>https://news.harica.gr/article/2021_harica_tls_roots/</link>
      <pubDate>Mon, 30 May 2022 12:00:00 +0300</pubDate>
      
      <guid>https://news.harica.gr/article/2021_harica_tls_roots/</guid>
      <description>We are pleased to announce that on the 1st of June 2022, HARICA will switch the issuance of SSL/TLS certificates to its 2021 Root TLS Certification Authorities.
Both HARICA TLS RSA Root CA 2021 and HARICA TLS ECC Root CA 2021 are already pre-installed on Windows operating systems as well on macOS 12 providing the necessary trust anchor for Google Chrome, Microsoft Edge and other popular Internet Browsers. In addition, Mozilla Firefox has updated its Certificate Store with HARICA’s new RootsCAs.</description>
    </item>
    
    <item>
      <title>DV certificates for Onion websites</title>
      <link>https://news.harica.gr/article/onion_announcement/</link>
      <pubDate>Mon, 26 Apr 2021 13:10:14 +0300</pubDate>
      
      <guid>https://news.harica.gr/article/onion_announcement/</guid>
      <description>UPDATE Following the high demand for onion certificates, HARICA decided to extend the discount period till the end of August 2021.
Great news for Onion fans! We are excited to announce that HARICA has started issuing Domain Validated (DV) certificates for v3 Onion websites.
HARICA is a Publicly Trusted Certification Authority (CA) that participates in all major Global “ROOT CA” Trust Programs (360, Adobe, Apple, Microsoft, Mozilla, Oracle), and operates as a “Trust Anchor” in widely used Application Software and Operating Systems (Adobe, Apple, Google, Microsoft, Mozilla, Linux).</description>
    </item>
    
  </channel>
</rss>
