Published using Google Docs
Disabling of SHA256-Full-Chain certificates due to a bug in Chrome
Updated automatically every 5 minutes

According to technical announcement from Symantec about Hashing Algorithm bug in Chrome browser. Any SSL orders for Symantec, Thawte, and GeoTrust Extended Validation (EV) certificates with rvssl.com have to select Hashing Algorithm as “SHA-256 with RSA or DSA and SHA-1 root” only.

Once the bug is solved, the EV Certificate orders will be available to select Hashing Algorithm as “SHA-256 with RSA and SHA-256 root” and SHA-256 with RSA or DSA and SHA-1 root”.

The official announcement is below.

Symantec, Thawte, and GeoTrust Extended Validation (EV) certificates issued in late 2017 from the DigiCert SHA-256 full chain hierarchy does not display the green address bar in Google Chrome. This is due to a bug in Chrome. See Chrome Bug where Chrome doesn’t show the green browser bar for EV certificates issued from our Full SHA256 chain.

This bug is reported and we are currently waiting for Google to fix it. Until then, to avoid customer confusion, we have disabled this option. Once the feature is enabled again, the certificate can be reissued with this chain and will be working as expected.

For more details please see this Knowledge base report