Cloudflare Wildcard Server Cert Expiry - Action Required

Scheduled Maintenance Report for CardinalCommerce

Update

Scheduled maintenance is still in progress. We will provide updates as necessary.
Posted Jan 27, 2026 - 16:48 EST

In progress

Scheduled maintenance is currently in progress. We will provide updates as necessary.
Posted Jan 27, 2026 - 16:00 EST

Scheduled

CardinalCommerce will be updating a certificate that is set to expire on March 24, 2026. The leaf certificate will be updated on March 10, 2026.

The certificate that is expiring is the wildcard server certificate used on most of Cardinal’s externally facing sites.

The expiring certificate details:

Common Name (CN): *.cardinalcommerce.com
Serial Number: 0e:fe:06:35:d2:9c:9f:d5:6d:eb:af:2c:63:6d:84:b9
Date of Expiry: 03/24/2026

The new leaf certificate is:
Common Name (CN): *.cardinalcommerce.com
Serial Number: 05:6a:e3:77:86:ef:f2:bf:09:b3:13:22:f2:0d:ef:6c
Date of Expiry: 02/21/2027
*Please request chain from our support team if needed

Intermediate Certificate Details (remain the same):
Common Name (CN): DigiCert Global G2 TLS RSA SHA256 2020 CA1
Serial Number: 0c:f5:bd:06:2b:56:02:f4:7a:b8:50:2c:23:cc:f0:66

Root Certificate Details (remain the same):
Common Name (CN): DigiCert Global Root G2
Serial Number: 03:3a:f1:e6:a7:11:a9:a0:bb:28:64:b1:1d:09:fa:e5

Customer Responsibilities:

If you trust on the leaf certificate, you need to ensure the new server certificate is loaded in your trust store prior to March 10, 2026. 

It is imperative that we perform the testing and or migration before certificate expiration on March 24, 2026, otherwise services may be impacted.

When do these changes take place?

The new certificate will be updated in our production environment on Tuesday, March 10, 2026 at 10:00 AM EST.

Testing – How can I test these changes?

Customers are encouraged to work with their network teams to ensure they can support the updated certificates.

No new parameters or fields are required for these changes.  If you do not trust the new certificate, you will be unable to connect to Cardinal endpoints receiving a connection timeout or certificate error response.

Contact Information:

Should you have any questions or concerns regarding this notice, please reach out to our support team at Support@cardinalcommerce.com.

We sincerely appreciate your attention to this matter and your continued trust in our services.
Posted Jan 27, 2026 - 15:38 EST
This scheduled maintenance affects: Cardinal Consumer Authentication (3DS), Cardinal API, Cardinal Hybrid API, and Merchant Portal.