Browse Definitions :
Definition

Let's Encrypt

Contributor(s): Matthew Haughn

Let's Encrypt is a free, open and automated certificate authority (CA) provided as a service by the Internet Security Research Group (ISRG).

Let's Encrypt is designed to simplify the acquisition of SSL/TLS digital certificates proving a site’s authenticity, while also providing encryption. Its automated processes will also help reduce page errors due to out of date certificates.

Using a protocol called Automated Certificate Management Environment (ACME), Let's Encrypt simplifies through automation. All of the processes involved in providing proof of control for a website such as obtaining, renewing and revoking certificates, are automated. With a simple click (or command methods), HTTPS security can be enabled for any site.

The basics of Let’s Encrypt:

  • Domain name owners can obtain trusted certificates for their sites free of charge.
  • Through the interaction with the CA, server software can obtain a certificate, securely configure it and automatically manage renewal.
  • Let’s Encrypt is designed to serve as a platform for promoting TLS (Transport Layer Security) best practices.
  • Information about all certificates issued or revoked will be made publicly available.
  • The ACME protocol will also be made publicly available as an open standard.

Let’s Encrypt is hosted by the Linux Foundation. Project sponsors include the Mozilla Foundation, IdenTrust, Akamai, Cisco, the Electronic Frontier Foundation (EFF) and Automattic. The project is part of a long-term goal to encrypt the entirety of the web.

See a presentation on Let's Encrypt by the EFF:

This was last updated in June 2015

Continue Reading About Let's Encrypt

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

Powered by:

SearchCompliance

  • PCI DSS (Payment Card Industry Data Security Standard)

    The Payment Card Industry Data Security Standard (PCI DSS) is a widely accepted set of policies and procedures intended to ...

  • risk management

    Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings.

  • compliance framework

    A compliance framework is a structured set of guidelines that details an organization's processes for maintaining accordance with...

SearchSecurity

  • Trojan horse (computing)

    In computing, a Trojan horse is a program downloaded and installed on a computer that appears harmless, but is, in fact, ...

  • identity theft

    Identity theft, also known as identity fraud, is a crime in which an imposter obtains key pieces of personally identifiable ...

  • DNS over HTTPS (DoH)

    DNS over HTTPS (DoH) is a relatively new protocol that encrypts domain name system traffic by passing DNS queries through a ...

SearchHealthIT

  • telemedicine (telehealth)

    Telemedicine is the remote delivery of healthcare services, such as health assessments or consultations, over the ...

  • Project Nightingale

    Project Nightingale is a controversial partnership between Google and Ascension, the second largest health system in the United ...

  • medical practice management (MPM) software

    Medical practice management (MPM) software is a collection of computerized services used by healthcare professionals and ...

SearchDisasterRecovery

SearchStorage

  • M.2 SSD

    An M.2 SSD is a solid-state drive (SSD) that conforms to a computer industry specification and is used in internally mounted ...

  • kilobyte (KB or Kbyte)

    A kilobyte (KB or Kbyte) is a unit of measurement for computer memory or data storage used by mathematics and computer science ...

  • virtual memory

    Virtual memory is a memory management capability of an operating system (OS) that uses hardware and software to allow a computer ...

Close