• Link to Rss this site
  • Link to LinkedIn
  • Link to Youtube
  • Link to Instagram
  • English English English en
  • Deutsch Deutsch German de
Sales: +49 5251 390969-180 | Support: +49 5251 390969-300
NoSpamProxy
  • PRODUCTS
    • Platforms
      • NoSpamProxy Cloud
      • NoSpamProxy Server
      • NoSpamProxy 25Reports
  • SOLUTIONS
    • Threat Protection
      • Protection against Spam, Phishing & Malware
      • AI Threat Detection
      • Isolated File Analysis
      • Microsoft 365 Mail Security
    • Secure Email Communication
      • Email Encryption
      • Automatic Certificate Management
      • Search for Public Keys
    • Productivity & Compliance
      • Sending Large Files
      • Email Disclaimer
  • INDUSTRIES
    • By Company Size
      • Large Companies
      • Small and Medium-Sized Enterprises
    • Regulated Industries
      • Public Institutions
      • Healthcare
      • Finance
      • Law
    • Success Stories
      • Testimonials
      • Awards
  • PARTNERS
    • Resellers
      • Finding Resellers
      • Become a Reseller
      • Become an MSP Partner
    • For Existing Partners
      • Partner Portal
      • Partner Trainings
      • NFR Licenses
  • RESOURCES
    • Support
      • Online Documentation
      • Forum
      • Support
    • Continuing Education
      • Training Courses
      • Webcasts
    • Knowledge
      • Blog
      • Newsletter
    • Downloads
      • NoSpamProxy Server
    • Events
      • Events
      • Webcasts
  • PRICING
  • CONTACT
  • FREE TRIAL VERSION
    • Price Request
    • Free Trial Version
  • English
    • Deutsch
  • Click to open the search input field Click to open the search input field Search
  • Menu Menu
  • Information

NoSpamProxy and TLS Certificates: What Will Change by 2029

Stefan Feist | Technischer Redakteur
Author: Stefan FeistTechnical Writerhttps://www.linkedin.com/in/stefan-feist-23b257b0/–Connect on LinkedIn

The validity period of publicly trusted TLS certificates will be gradually reduced over the coming years. For administrators, this means a significantly greater workload in terms of certificate management, unless this process is automated. This article explains the background of the change, the specific timeline, and the planned approach for NoSpamProxy.

07.08.2026|Last edited:06.08.2026

How is the validity period of publicly trusted TLS certificates changing?

In April 2025, the CA/Browser Forum decided to gradually reduce the maximum validity period of public TLS certificates from the current 398 days to 47 days. The effective dates are:

  • Since March 14, 2026: 200 days
  • Starting March 15, 2027: 100 days
  • Starting March 15, 2029: 47 days

With shorter validity periods, the number of required certificate renewals increases significantly. Manual management will hardly be feasible at this frequency, which is why automation is necessary.

Shorter validity periods reduce the time window during which compromised keys can be misused. They also reduce reliance on unreliable revocation mechanisms such as CRL and OCSP. In addition, domain authorization checks (Domain Control Validation) must be renewed more frequently as a result, which prevents validation data from becoming outdated.

The Situation in NoSpamProxy

In NoSpamProxy, TLS certificates are primarily used to secure the SMTP connection and for communication with the web app.

Currently, NoSpamProxy does not have any automation in place for renewing and integrating TLS certificates. This will change by the final deadline in 2029, so that administrators will not incur any additional operational effort in running NoSpamProxy as a result of the transition.

Our timeline is based on the guidelines of the CA/Browser Forum and consists of two steps:

1. Interim Solution Through March 15, 2027

By the deadline for the 100-day rule, an interim solution will be available that allows customers to automatically renew TLS certificates and integrate them directly into NoSpamProxy. This solution will address the immediate need arising from the shorter validity periods starting in 2026 and 2027.

2. Native ACME support by 2029

In the long term, the interim solution will be replaced by native integration of the ACME (Automatic Certificate Management Environment) protocol into NoSpamProxy. ACME is the de facto standard for the automated issuance and renewal of TLS certificates and is already supported by numerous certificate authorities. Native integration will ensure stability and simplicity during operation and relieve administrators of the need for manual intervention.

Conclusion

The reduction in TLS certificate validity periods is a requirement adopted by the certification industry that has already taken effect. For operators of NoSpamProxy environments, there is no immediate need for action: With the planned interim solution through 2027 and native ACME support through 2029, automation will be available well in advance of the respective deadlines.

We will provide specific dates and details regarding implementation here as soon as further information becomes available.

  • share 
  • share 
  • share 
  • email 

SEARCH

PRODUCT

  • All Topics
  • NoSpamProxy Cloud
  • NoSpamProxy Protection
  • NoSpamProxy Encryption
  • NospamProxy Large Files

NoSpamProxy Newsletter

Subscribe to Newsletter

You need support?

You can find more information about NoSpamProxy in our documentation and forum.

CATEGORY

  • All Topics
  • News
  • News
  • Product
  • Product
  • Tech & Support
  • Tech & Support
  • Events
  • Events
Net at Work GmbH
Am Hoppenhof 32 A
33104 Paderborn
Tel. +49 5251 390969-000
Fax +49 5251 390969-009
www.nospamproxy.com
RSS Feed Logo RSS Feed Logo Subscribeto RSS Feed

NoSpamProxy

  • About us
  • Career
  • General terms and conditions
  • Data Protection Information for Business Partners and Applicants
  • Cybersecurity (PSIRT)

Partners

  • Finding resellers
  • Becoming a reseller
  • Becoming a MSP Partner
  • Newsletter Subscription
  • Order Certificates

Categories

  • All topics
  • News
  • Support
  • Product
  • Events
  • Updates

Latest News

  • NoSpamProxy Info Icon
    NoSpamProxy continues to evolve: greater focus on product and partner business01.09.2026 - 10:00
  • Info Icon
    Action Required: Renew Permissions for the Entra ID User Import14.08.2026 - 13:59
  • info icon
    NoSpamProxy and TLS Certificates: What Will Change by 202907.08.2026 - 10:00
IMPRINT • EULA • Privacy Policy • • © 2026 Net at Work GmbH
  • Link to Rss this site
  • Link to LinkedIn
  • Link to Youtube
  • Link to Instagram
Link to: Security Enhancement: Optimized Sender Verification for the Microsoft 365 Connector Link to: Security Enhancement: Optimized Sender Verification for the Microsoft 365 Connector Security Enhancement: Optimized Sender Verification for the Microsoft 365 C...NoSpamProxy Update Link to: Action Required: Renew Permissions for the Entra ID User Import Link to: Action Required: Renew Permissions for the Entra ID User Import Info IconAction Required: Renew Permissions for the Entra ID User Import
Scroll to top Scroll to top Scroll to top