Google promotes the new safety requirements for HTTPS codes

Big image: Chrome is the most popular browser across various platforms and types of devices, with a market share of more than 66 percent. It goes without saying that every change made by Google for its royal browser inevitably affects all the main players in the ecosystem on the web.

Google recently announced two main initiatives aimed at strengthening web safety, with the ultimate goal of making encryption and management of certificates more reliable and flexible against electronic crimes. These new features are part of Chrome root programWhich, according to Google, shows the company’s commitment to strengthening online security through its Chrome browser.

As the world’s most popular browser seller, Google is very excited to improve web safety by encouraging industry institutions to adopt their proposed standards. the The latest changes From the search and advertising giant, it includes the CA/Browser Forum, a group through the industry that creates basic requirements for the issuance of TLS certificates.

TLS Etisalat, which allows HTTPs encoded protocols, is the backbone of modern web security. However, Internet criminals are constantly looking for ways to circumvent this protection. To counter this, Google proposed two main decisions: confirming the multi -perspective version (MPIC) and an automatic examination process known as “Lining”.

Google explained that MPIC enhances the current methods of verifying the legitimacy of the field before the certificate authority has issued a new TLS certificate. The current process, known as “field health verification”, can be used in various ways, which may lead to a fraudulent certificate. MPIC aims to reduce these risks by introducing additional verification views.

The CA/Browser Forum unanimously adopted MPIC in a recent voting session, making it a mandatory condition for certificate authorities during the certificate issuance. Google also highlighted Open MPIC project As a strong application of this new verification method.

While MPIC helps prevent the issuance of fraudulent certificates, Lining provides an additional layer of safety by analyzing X.509 certificates for potential problems. The X.509 standard determines the coordination of public key certificates and plays an important role in the TLS protocol. With LINTING, CAS can verify whether the certificate has been properly coordinated for intended use, such as the website authentication.

Lining also defines unsafe certificates that depend on weak or outdated encryption techniques, thus enhancing security and ensuring better interconnection between CAS by adhering to industry standards. Google indicated that the integration process can be carried out through many open projects, including Certlint, Pkilint, X509Lint and Zlint. The company again received unanimous support to vote at the CA/Browser Forum recently, and technology officially became a condition for new public certificates issued by CAS on March 15, 2025.

Leave a Comment