Migrating to DigiCert Root Certificates
Major web browser providers have begun the process to reduce and then remove trust for Symantec root certificates. These changes will impact the Symantec root certificates currently used to sign PayPal’s TLS certificates for www.paypal.com and www.paypalobjects.com. We are working to update the certificates for these endpoints using trusted DigiCert root certificates. PayPal intends to implement these changes before browser providers remove trust for Symantec root certificates. To ensure there is no impact to your PayPal services, please make sure that you are using the most recent, non-beta web browser version available to access www.paypal.com or www.paypalobjects.com.
Additional Information
See the following links for more information about changes that are happening in the browsers:
- The Google Security blog discusses Chrome’s plan to distrust Symantec certificates.
- DigiCert has published an informational bulletin on certificates impacted by potential Chrome distrust.
- Mozilla explains its distrust of Symantec TLS certificates.
- Apple provides information for website operators about distrusting Symantec certificate authorities.