2026-01-23 14:44:00
2026-01-23 14:44:00
Public Certificate Authorities (CAs) are changing how SSL/TLS certificates work.
As per recent CA/Browser Forum decisions, public CAs will stop issuing certificates that support client authentication starting June 15, 2026. While this change improves security for public websites, it creates a serious challenge for enterprises, intranet applications, and closed user groups that rely on client authentication or mutual TLS (mTLS).
This is where SecureNT Intranet SSL becomes highly relevant.
Client authentication (also called mutual TLS or mTLS) is a security mechanism where:
This approach is commonly used in:
Many existing software products depend on client authentication and cannot simply switch to password-based access.
Public CAs are designed primarily for public-facing websites accessed through browsers.
Because client authentication certificates introduce risks in the public ecosystem, the CA/Browser Forum has decided to restrict public CAs from issuing SSL certificates with client authentication capability after 2026.
The result:
This leaves a gap for private and internal applications.
If your application requires client authentication:
We are already seeing this shift.
Recently, an existing customer asked:
“Do you provide SSL certificates for a closed group of users with client authentication?”
The answer was yes — SecureNT Intranet SSL.
SecureNT Intranet SSL/TLS is designed specifically for private networks and controlled user groups.
Unlike public CA certificates, SecureNT supports:
SecureNT acts as a private Certificate Authority tailored for enterprise use — exactly what client authentication requires.
Public SSL certificates are limited to short validity periods.
Intranet systems often require long-term stability.
SecureNT Intranet SSL certificates are available for:
This reduces operational overhead and avoids unnecessary certificate churn.
SecureNT is ideal if:
The removal of client authentication from public CAs is not a temporary change — it is a permanent shift.
Organizations that rely on mTLS must act early.
SecureNT Intranet SSL allows you to:
Copyright © 2026 Secure Network Traffic. All rights reserved. SecureNT is a registered trademark of Secure Network Traffic.