[Oct 11, 2022] AWS Dynamic Intermediate Certificate Authorities

AWS is updating their Certificate Authorities.
Most users will not experience an impact from this change.

Concerned are Eth users that have:
(1) pinned their certificate chains or
(2) cached CAA records

Starting October 11, whenever the certificate expires AWS may reissue them from another domain - it's hard to tell which or if they're changing anything.

If you use intermediate CA information through certificate pinning, you will need to make changes and pin to an Amazon Trust Services root CA instead of an intermediate CA or leaf certificate.

See Amazon introduces dynamic intermediate certificate authorities for more details.