T11-2018: Google Chrome planned distrust of Symantec Corporation SSL/TLS Certificates- impact for BIOVIA software
CISPro
BIOVIA is issuing an advisory notice to all customers regarding an upcoming change with the Google Chrome web browser. With the release of Google Chrome version 66, currently slated for April 17, 2018 per Google, Chrome will begin phasing out certificate authority trust for SSL/TLS certificates issued by the Symantec Corporation and any related certificate authority brand names. These brand names may include Thawte, VeriSign, Equifax, GeoTrust, and RapidSSL. Additional background information on this decision by Google can be found on the Google Security Blog entry located at this URL:
https://security.googleblog.com/2017/09/chromes-plan-to-distrust-symantec.html
BIOVIA is completing a review of all hosted application environments to ensure that any impacted certificates are replaced prior to the upcoming Google Chrome version 66 release.
Resolution:
BIOVIA software customers using SSL/TLS certificates that are not sourced through Symantec Corporation or an associated brand name, or customers using a BIOVIA hosted web application such as BIOVIA Notebook Cloud, BIOVIA ScienceCloud, or BIOVIA CISPro Cloud, no action is required.
BIOVIA customers using SSL/TLS certificates issued by Symantec Corporation or an associated brand name will need to replace all impacted certificates with a new certificate from an alternate trusted certificate authority (CA) prior to the release of Google Chrome version 66 to avoid browser certificate warnings. Impacted customers may have already received or may soon receive additional related notice(s) from the Symantec Corporation and/or an associated brand name providing advice or instructions on certificate replacements. A Symantec Corporation blog post that may provide additional courses of action for impacted customers is available at the following URL:
https://www.symantec.com/connect/blogs/information-replacement-symantec-ssltls-certificates
BIOVIA is not able to provide specific endorsements or recommendations for alternate certificate authority sources. If you have any questions regarding this change that are not addressed through the Google and Symantec Corporation content above, please contact BIOVIA Support.
Sincerely,
BIOVIA Support