Skip to main content

DigiCert for U.S. Government release notes

These release notes describe new features, enhancements, and fixes for selected DigiCert ONE products in the FedRAMP cloud deployment. They cover updates to the following products and services:

  • Account Manager

  • DigiCert Private CA

  • Trust Lifecycle Manager

  • Software Trust Manager

August 19, 2026

DigiCert® ONE version: 1.13108.6 | Account Manager: 1.1581.0

Enhancements

Stronger signature algorithms required for certificate uploads

Client authentication certificate uploads in Account Manager now require SHA-256 or stronger signature algorithms. Certificates signed with SHA-1 are no longer accepted for new uploads, including profile uploads, administrator uploads, and bulk user imports. Certificates that were uploaded previously are unaffected and can continue to be used for signing.

Older cryptographic options removed from client certificate generation

When generating client authentication certificates in Account Manager, SHA-1 and 3DES options are no longer available. New certificates use SHA-256 for the signature hash, AES-256-CBC for .p12 encryption, and HMAC-SHA-256 for .p12 protection. Existing downloaded .p12 files are unaffected.

Stronger cryptographic requirements for CSRs

Certificate signing requests (CSRs) submitted via the Account Manager API must now use SHA-256 or stronger. RSA and EC keys remain supported, with minimum key sizes of 2048 bits for RSA and 256 bits for EC.