TABLE OF CONTENTS
Summary
The migration to new Sectigo-signed TLS certificates has now been completed for all environments:
EU Production: deployed on June 30 at 9:30 AM CEST US Production: deployed on June 30 at 2:25 PM CEST
The switch was required due to expiration of the previous certificate and widespread distrust of the Entrust CA by many platforms.
Sectigo has been selected as a publicly trusted and compatible certificate authority.
Impact on API connectivity
The previous certificate (Entrust-signed) caused compatibility issues with certain libraries and platforms.
The new Sectigo-signed certificate has been deployed successfully, and most connections continue to function as expected.
Customers must ensure their systems and infrastructure trust the new CA to avoid any service disruption.
You can find the certificates to trust on our documentation here : https://doc.antelop-solutions.com/latest/common/api/certificates.html
iOS SDK Compatibility (Full SDK)
This change affected some iOS applications using the full Entrust SDK due to certificate pinning and App Transport Security settings.
As explained in our documentation : https://doc.antelop-solutions.com/latest/wallet/sdk/ios_integration.html#_update_info_plist_app_apple_pay_extensions
The Info.plist file must include the correct NSExceptionDomains for:
- mobile.antelop.io
- mobile.antelop.net
- mobile.digitalcard-entrust.com
An internal fix has been tested and delivered to avoid any disruption.
We still recommend republishing the app with the correct Info.plist configuration to prevent service disruption.
Full instructions are available here: https://antelop-support.freshdesk.com/en/support/solutions/articles/44002647702-ios-%E2%80%93-sdk-configuration-instructions-for-certificate-compatibility
Need help?
If you experience any connectivity issue or have doubts regarding your configuration, please open a support ticket and our team will assist you. https://antelop-support.freshdesk.com/en/support/tickets/new