When Let’s Encrypt first launched, we needed to ensure that our certificates were widely trusted. To that end, we arranged to have our intermediate certificates cross-signed by IdenTrust’s DST Root CA X3 . This meant that all certificates issued by those intermediates would be trusted, even while our own ISRG Root X1 wasn’t yet.
Shortening the Let's Encrypt Chain of Trust
calendar_today
July 10, 2023
domain
lets-encrypt