August 2019
Intermediate to advanced
786 pages
20h 22m
English
When we set up the CA, we defined the CA validity period as 20 years. But that doesn't mean every certificate it issues will have a 20-year validity period. Root CAs will issue certificates only to issuing CAs. The certificate request, approval, and renewal processes are manual. Therefore, these certificates will have longer validity periods. For this demonstration, I will set it for 10 years:
certutil -setreg ca\ValidityPeriod "Years"certutil -setreg ca\ValidityPeriodUnits 10