Cloudflare has announced the general availability of its Certificate Transparency Monitoring service. This service, which has been in public beta since 2019, sends alerts to subscribers when a new TLS certificate appears in a public Certificate Transparency (CT) log for their domains. The key improvement in this release is the implementation of a filter that removes alerts for certificates issued by Cloudflare itself.
Previously, the monitoring service generated a high volume of alerts due to Cloudflare's own certificate issuance and renewal processes, such as Universal SSL renewals and certificates from Advanced Certificate Manager. These certificates are intentionally logged to public CT logs to ensure browser trust. However, the frequent renewals, which can occur as often as every 60 days, led to an overwhelming number of notifications, making it difficult for users to identify genuinely suspicious certificates.
The new filtering mechanism ensures that users only receive alerts for certificates they did not expect and that were not issued by Cloudflare. This significantly reduces the "noise" in the alert system, allowing users to focus on potential mis-issuances or unauthorized certificate activity. The change aims to make the early warning system more effective and actionable for the more than 650,000 customer domains currently using the service.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Cloudflare has made its Certificate Transparency Monitoring generally available, now featuring a filter that removes alerts for certificates Cloudflare itself issues. This change addresses a significant "noise problem" by only notifying users of unexpected certificates, making the service more effective for identifying mis-issued certificates.