DigiCert for U.S. Government release notes
These release notes describe new features, enhancements, and fixes for selected DigiCert ONE products in the FedRAMP cloud deployment. They cover updates to the following products and services:
Account Manager
DigiCert Private CA
Trust Lifecycle Manager
Software Trust Manager
August 19, 2026
DigiCert® ONE version: 1.13108.6 | Account Manager: 1.1581.0
Enhancements
Stronger signature algorithms required for certificate uploads
Client authentication certificate uploads in Account Manager now require SHA-256 or stronger signature algorithms. Certificates signed with SHA-1 are no longer accepted for new uploads, including profile uploads, administrator uploads, and bulk user imports. Certificates that were uploaded previously are unaffected and can continue to be used for signing.
Older cryptographic options removed from client certificate generation
When generating client authentication certificates in Account Manager, SHA-1 and 3DES options are no longer available. New certificates use SHA-256 for the signature hash, AES-256-CBC for .p12 encryption, and HMAC-SHA-256 for .p12 protection. Existing downloaded .p12 files are unaffected.
Stronger cryptographic requirements for CSRs
Certificate signing requests (CSRs) submitted via the Account Manager API must now use SHA-256 or stronger. RSA and EC keys remain supported, with minimum key sizes of 2048 bits for RSA and 256 bits for EC.