For Zuora's yearly SSL certificate renewal, we are updating the SSL certificate (including both CA Root & Intermediate Certificates) used for the following Production endpoints for our US Cloud 2 Data Center:
- www.zuora.com
- api.zuora.com
- rest.zuora.com
- static.zuora.com
Action may be required on your part prior to July 6th, 2022 if your integration certificate store does not trust the appropriate new root and intermediate certificate chain (mentioned below). Please work with your technology teams to determine what actions you must take to ensure you do not experience any disruption in Zuora services.
When will these changes take effect on the Zuora side?
These changes will occur on July 6th, starting at 7PM PT and continuing until 7:30PM PT.
How will this change impact me?
Your integration may stop functioning if your systems do not trust the correct root and intermediate certificate.
* Important Note: Some applications require a restart even if the trusted root store is in place in order to use the new certificate for SSL connections.
What action must I take?
If the Root and Intermediate Certificates are not trusted by your applications or libraries, you must complete the following actions before the scheduled maintenance to avoid any potential service disruption. Please work with your technology teams to determine what actions you must take to trust this CA.
Download and install the Appropriate Root Certificate Bundle
If your integration does not trust the Comodo Root Certificates, then the certificate must be imported into your applications trusted CA store. The new certificates are available in our Knowledge Center:
https://knowledgecenter.zuora.com/BB_Introducing_Z_Business/Policies/Full_Certification_Chain
Can Zuora tell me if I will be impacted?
Unfortunately we cannot tell if you will be impacted as the selection of integrations and their certificate needs vary widely from customer to customer and system to system. You may need to review this with your local Engineering or Business Technology team to evaluate impact for this certificate renewal. If you maintain a truststore, or if you pin certificates (contrary to our recommendations against it) you may be impacted and require updating to the new certificates.
What happens if I take no action?
For integrations that require updated SSL Certificates, or that maintain a truststore, your systems may not be able to connect to the Zuora Production endpoints after this change is implemented.
Please discuss this change with your technology teams to ensure you take the appropriate actions.
You are encouraged to register to the Zuora Community in order to receive the latest update on this topic.
Thank you for your support as it allows us to maintain the highest security standards at Zuora ensuring the safety of your data.