Browse Definitions :
Definition

Let's Encrypt

Contributor(s): Matthew Haughn

Let's Encrypt is a free, open and automated certificate authority (CA) provided as a service by the Internet Security Research Group (ISRG).

Let's Encrypt is designed to simplify the acquisition of SSL/TLS digital certificates proving a site’s authenticity, while also providing encryption. Its automated processes will also help reduce page errors due to out of date certificates.

Using a protocol called Automated Certificate Management Environment (ACME), Let's Encrypt simplifies through automation. All of the processes involved in providing proof of control for a website such as obtaining, renewing and revoking certificates, are automated. With a simple click (or command methods), HTTPS security can be enabled for any site.

The basics of Let’s Encrypt:

  • Domain name owners can obtain trusted certificates for their sites free of charge.
  • Through the interaction with the CA, server software can obtain a certificate, securely configure it and automatically manage renewal.
  • Let’s Encrypt is designed to serve as a platform for promoting TLS (Transport Layer Security) best practices.
  • Information about all certificates issued or revoked will be made publicly available.
  • The ACME protocol will also be made publicly available as an open standard.

Let’s Encrypt is hosted by the Linux Foundation. Project sponsors include the Mozilla Foundation, IdenTrust, Akamai, Cisco, the Electronic Frontier Foundation (EFF) and Automattic. The project is part of a long-term goal to encrypt the entirety of the web.

See a presentation on Let's Encrypt by the EFF:

This was last updated in June 2015

Continue Reading About Let's Encrypt

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

SearchCompliance

  • Whistleblower Protection Act

    The Whistleblower Protection Act of 1989 is a law that protects federal government employees in the United States from ...

  • smart contract

    A smart contract, also known as a cryptocontract, is a computer program that directly controls the transfer of digital currencies...

  • risk map (risk heat map)

    A risk map, also known as a risk heat map, is a data visualization tool for communicating specific risks an organization faces. A...

SearchSecurity

  • challenge-response authentication

    In information security, challenge-response authentication is a type of authentication protocol where one entity presents a ...

  • Secure Shell (SSH)

    SSH, also known as Secure Shell or Secure Socket Shell, is a network protocol that gives users, particularly system ...

  • honeypot (computing)

    A honeypot is a network-attached system set up as a decoy to lure cyberattackers and to detect, deflect or study hacking attempts...

SearchHealthIT

SearchDisasterRecovery

  • virtual disaster recovery

    Virtual disaster recovery is a type of DR that typically involves replication and allows a user to fail over to virtualized ...

  • tabletop exercise (TTX)

    A tabletop exercise (TTX) is a disaster preparedness activity that takes participants through the process of dealing with a ...

  • risk mitigation

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a data center.

SearchStorage

  • exbibyte (EiB)

    An exbibyte (EiB) is a unit used to measure data capacity.

  • zebibyte (ZiB)

    A zebibyte (ZiB) is a unit used to measure computing and storage capacity.

  • tiered storage

    Tiered storage is a way to assign different categories of data to various types of storage media with the objective of reducing ...

Close