SSL certificates can be valid for at most 199 days. From 24 February 2027 the limit becomes 99 days. Read more →
AlphaSSL

AlphaSSL - NEW ROOT 2024

DV Max 199 days 99 days from 14/03/2027
AlphaSSL Single Name Certificate, affordable with Enhanced Security (Reduced Compatibility)
Validation
Domain Validation
Type
Single domain
Certificate Authority
GlobalSign
256-bit encryption Free reissuance Root compatibility Windows Root Store The root is included from 2021 With 1 Cross-Sign the root is included from 2009 Microsoft's root store. It updates automatically on every supported Windows version. For older clients to validate, the server has to send the cross certificate on top of the ordinary intermediate. On Windows Server, Server Authentication also has to be turned off for the new root on the server: otherwise Schannel builds the short chain to the new root and the cross certificate is never sent.Apple Root Store The root is included from 2022 With 1 Cross-Sign the root is included from 2009 Apple's root store in iOS and macOS. It follows the operating system version, so older devices never receive new roots. For older clients to validate, the server has to send the cross certificate on top of the ordinary intermediate. On Windows Server, Server Authentication also has to be turned off for the new root on the server: otherwise Schannel builds the short chain to the new root and the cross certificate is never sent.Android Root Store The root is included from 2024 With 1 Cross-Sign the root is included from 2009 Android's built-in root store. It follows the Android version, and older phones rarely receive new roots. For older clients to validate, the server has to send the cross certificate on top of the ordinary intermediate. On Windows Server, Server Authentication also has to be turned off for the new root on the server: otherwise Schannel builds the short chain to the new root and the cross certificate is never sent.Linux Root Store The root is included from 2021 With 1 Cross-Sign the root is included from 2009 The Mozilla NSS bundle, shipped by Debian, Ubuntu and RHEL as ca-certificates. For older clients to validate, the server has to send the cross certificate on top of the ordinary intermediate. On Windows Server, Server Authentication also has to be turned off for the new root on the server: otherwise Schannel builds the short chain to the new root and the cross certificate is never sent.Java Root Store The root is included from 2024 With 1 Cross-Sign the root is included from 2009 The Java cacerts file. It follows the Java update installed on the server. For older clients to validate, the server has to send the cross certificate on top of the ordinary intermediate. On Windows Server, Server Authentication also has to be turned off for the new root on the server: otherwise Schannel builds the short chain to the new root and the cross certificate is never sent.8.6of 10Requires 1 Cross-SignCovered by the root certificate itselfCovered through one cross-signed certificate

About AlphaSSL - NEW ROOT 2024

AlphaSSL, the budget-friendly option under the GlobalSign umbrella, offers domain validation with quick issuance via email, DNS, or URL validation. Orders starting with www. will also include the name without www. automatically.

Since January 2024, it has transitioned to using the 'GlobalSign Root CA R6' root certificate, implementing a more robust security protocol with SHA384 hashing and a very large 4096-bit RSA key. However, this advancement may slightly reduce compatibility with older clients, such as Java and Android, which do not automatically update root certificate stores.

Comparatively, the GlobalSign branded TLS products appear to retain the older 'GlobalSign Root R3' root certificate for a few years more, utilizing SHA256 hashing with a 2048-bit RSA private key, ensuring higher compatibility albeit with slightly less future proof security.

For alternative products with higher compatibility within this price range, consider products from the brands RapidSSL, Sectigo PositiveSSL or Thawte, as they are changing their root CA certificates at a slower pace.

Reissue schedule

Certificates must be reissued before they expire within the order period. The timeline shows when each reissue is needed.

1 year

Order: 1 year
↓ 99-day cap
199d
99d
67d
Sept 2026
Issue and install
Apr 2027
Reissue and install
Jul 2027
Reissue and install
Sept 2027
Renew order
+ issue new cert.

from

€53 /year excl. VAT
Buy AlphaSSL - NEW ROOT 2024 Compare certificates
  • 14-day full refund
  • Free phone support
  • No hidden fees
  • Unlimited server installation

Ready to create a free account?

Create a free account and order your first certificate. A DV certificate is issued in under 2 minutes.