
Originally Posted by
cfortune
Cert just expired at 10:00 something AM today and trot is right, no difference in the security of the site prior to 10:00.
When you do a renewal, make sure to have your certificate authority do a SHA-256 certificate. Chrome and local cert stores for Microsoft (I think anyway, haven't looked too much into this) will start throwing certificate errors sometime in November. That's what Google has ball parked for their release which will enforce this. I just got done replacing all our certificates at work because of this.
Also, SSL v3 has a vulnerability right now and TLS without v3 fallback should be configured.