Certificate validity

Why an SSL certificate may expire before the service term

A security service can run for a longer billing period than one issued certificate. Industry rules limit certificate lifetimes, so certificates are renewed or replaced during the service term.

Certificate instanceHas its own expiry date.

Service termCan cover several issuances.

Renewal is expectedValidation must keep working.

Two different dates

The product term and certificate validity are not the same thing

The service provides continuing HTTPS management. Each certificate has a separate not-before and not-after date set under browser and certificate-authority rules.

Shorter lifetimes

Public certificate maximums are reducing across the industry

Certificates issued from 15 March 2026 are limited to about 200 days, with further reductions scheduled in later years. Shorter certificates reduce the time an outdated or compromised credential remains usable.

Keep renewal working

DNS and website routing must still permit validation

Leave the protected domain connected to the intended service and do not remove required validation records. Contact UKC before expiry if the Client Area shows a renewal problem or the domain route has changed.

Was this answer helpful?

« Back