Not if you have any kind of certificate pinning. Welcome to several years ago.

And I don't care that they were sold to Digicert. Digicert picked them up and they were signed by the same certs, and I'm being forced to renew them earlier because the signing company has had all its certificates removed from browsers. Game over. I don't care who owns them now, before or since, they're dead to me as they required an out-of-band re-signing because of the incompetence of one of their signing parties... and that's just not compatible with my use of SSL.

To be honest, with LetsEncrypt wildcard certificates now valid in the wild, who cares about any of the CA's at all any more?

