Since September 2020, publicly trusted certificates are limited to 398 days (about 13 months). Major browsers enforce this — longer-validity certificates from CAs are distrusted. Let’s Encrypt issues 90-day certificates and recommends automated renewal every 60 days. The industry is moving toward 47-day maximum validity by 2026.
All questions